Impact
A flaw in the lighthouse component of Red Hat Advanced Cluster Management for Kubernetes 2 allows an attacker who can control a spoke cluster to create EndpointSlice objects with malicious IP addresses. The lighthouse DNS on other clusters then redirects legitimate service traffic to those fake endpoints, enabling a transparent Man‑in‑the‑Middle attack on cross‑cluster communications. This can result in unauthorized data disclosure or manipulation, but does not grant direct code execution. The vulnerability is associated with CWE-345 and CWE-489.
Affected Systems
The vulnerable product is Red Hat Advanced Cluster Management for Kubernetes 2.
Risk and Exploitability
The CVSS score of 5.4 indicates moderate severity. The EPSS score is < 1%, indicating a very low exploitation probability. The vulnerability is not listed in CISA KEV. The likely attack vector, inferred from the description, is a compromised spoke cluster that can create arbitrary EndpointSlice resources with attacker‑controlled IP addresses without requiring cluster‑wide privileged access.
OpenCVE Enrichment