Impact
An unauthenticated attacker can create unlimited cache entries in the search-v2-api component by sending requests with unique bearer tokens. Each token generates a permanent tokenReviews cache entry that is never cleared, causing the pod to consume increasing amounts of memory until it can no longer serve requests. The flaw is a classic case of resource exhaustion (CWE‑770) and can bring the affected service to a halt without requiring elevated privileges.
Affected Systems
The vulnerability affects Red Hat Advanced Cluster Management for Kubernetes version 2. No specific patch or version isolation is listed, so all deployments of this product are potentially impacted.
Risk and Exploitability
The CVSS score of 7.5 indicates a high likelihood of serious impact. The EPSS score is not available, and the vulnerability is not listed in CISA’s KEV catalog. Attackers can exploit the flaw from any networked environment that can reach the search-v2‑api endpoint by forging bearer tokens, which is an unauthenticated threat vector. Successful exploitation leads to a denial‑of‑service of the API component and potentially the entire cluster if the API is a critical control point.
OpenCVE Enrichment