Lucene search

K

Source-To-Image Security Vulnerabilities

cve
cve

CVE-2018-10843

source-to-image component of Openshift Container Platform before versions atomic-openshift 3.7.53, atomic-openshift 3.9.31 is vulnerable to a privilege escalation which allows the assemble script to run as the root user in a non-privileged container. An attacker can use this flaw to open network co...

8.8CVSS

8.8AI Score

0.001EPSS

2018-07-02 05:29 PM
35
cve
cve

CVE-2018-1103

Openshift Enterprise source-to-image before version 1.1.10 is vulnerable to an improper validation of user input. An attacker who could trick a user into using the command to copy files locally, from a pod, could override files outside of the target directory of the command.

6.5CVSS

6.3AI Score

0.001EPSS

2018-06-12 03:29 PM
31