Impact
The vulnerability in the MaaS API allows an attacker to forge HTTP headers X-MaaS-Username and X-MaaS-Group, which the system trusts without further authentication. This lack of first‑party authentication enables an attacker who can generate traffic from any pod in the cluster to bypass the Kuadrant AuthPolicy gateway, granting unauthorized privilege escalation. Consequences include minting Kubernetes ServiceAccount tokens in other tenants’ namespaces, revoking API keys, and exfiltrating model access configuration, thereby compromising confidentiality, integrity, and availability of workloads.
Affected Systems
Red Hat OpenShift AI (RHOAI). No other vendors or product variants are listed as affected.
Risk and Exploitability
With a CVSS score of 9.9, the vulnerability is considered critical. The EPSS score is not available, but the absence of a KEV listing does not reduce its threat; the attack is feasible from any pod in the cluster, requiring the ability to send forged HTTP headers, which is typically achievable by any running container with sufficient network reach to the MaaS API."
OpenCVE Enrichment