CVE Vulnerabilities

CVE-2015-5222

Published: Aug 24, 2015 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
8.5 HIGH
AV:N/AC:M/Au:S/C:C/I:C/A:C
RedHat/V2
6.5 IMPORTANT
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V3
Ubuntu

Red Hat OpenShift Enterprise 3.0.0.0 does not properly check permissions, which allows remote authenticated users with build permissions to execute arbitrary shell commands with root permissions on arbitrary build pods via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Openshift Redhat 3.0.0.0 (including) 3.0.0.0 (including)
Red Hat OpenShift Enterprise 3.0 RedHat openshift-0:3.0.1.0-1.git.527.f8d5fed.el7ose *

References