Lucene search

K
redhatcveRedhat.comRH:CVE-2019-11244
HistoryApr 06, 2020 - 11:05 p.m.

CVE-2019-11244

2020-04-0623:05:27
redhat.com
access.redhat.com
8

0.001 Low

EPSS

Percentile

33.3%

A flaw was found in kubectl that leaves http-cache files with read/write permissions for any user. In conjunction with a non-default value for --cache-dir, this may lead to the cache content being placed in a location accessible to other users on the system.

Mitigation

Do not use --cache-dir, or ensure that --cache-dir is not set to a location that other users have access to.