Kubernetes in OpenShift3 allows remote authenticated users to use the private images of other users should they know the name of said image.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://github.com/kubernetes/kubernetes/pull/18909 | third party advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1291963 | third party advisory vdb entry issue tracking |