CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2019-14819

HIGH
8.8
CVSS Severity Score
EPSS Score0.1980%
EPSS Percentile1.10th
Published2020年1月7日
Last Modified2024年11月21日

Vulnerability Description

A flaw was found during the upgrade of an existing OpenShift Container Platform 3.x cluster. Using CRI-O, the dockergc service account is assigned to the current namespace of the user performing the upgrade. This flaw can allow an unprivileged user to escalate their privileges to those allowed by the privileged Security Context Constraints.

Affected Platforms (CPE)

📦
Redhat

Openshift Container Platform

= 3.10
📦
Redhat

Openshift Container Platform

= 3.11

References & Advisories

相關漏洞威脅