Lucene search

K
redhatRedHatRHSA-2023:1897
HistoryApr 20, 2023 - 2:06 a.m.

(RHSA-2023:1897) Critical: Red Hat Advanced Cluster Management 2.6 hotfix security update for console

2023-04-2002:06:34
access.redhat.com
20
red hat
acm
hotfix
security update
console
cve-2023-29017
cve-2023-29199
cve-2023-30547
sandbox escape
exception sanitization
unix

CVSS3

10

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

EPSS

0.017

Percentile

88.1%

Security Fix(es)

  • CVE-2023-29017 vm2: Sandbox Escape
  • CVE-2023-29199 vm2: Sandbox Escape
  • CVE-2023-30547 vm2: Sandbox Escape when exception sanitization

CVSS3

10

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

EPSS

0.017

Percentile

88.1%