A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTINUsers may be able to read container logs and NT AUTHORITYAuthenticated Users may be able to modify container logs.
During installation, installed file permissions are set to allow anyone to modify those files.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Red Hat OpenShift Container Platform 4.12 | RedHat | openshift4-wincw/windows-machine-config-operator-bundle:v7.2.2-14 | * |
Red Hat OpenShift Container Platform 4.12 | RedHat | openshift4-wincw/windows-machine-config-rhel8-operator:7.2.2-14 | * |
Red Hat OpenShift Container Platform 4.13 | RedHat | openshift4-wincw/windows-machine-config-operator-bundle:v8.1.3-14 | * |
Red Hat OpenShift Container Platform 4.13 | RedHat | openshift4-wincw/windows-machine-config-rhel9-operator:8.1.3-16 | * |
Red Hat OpenShift Container Platform 4.14 | RedHat | openshift4-wincw/windows-machine-config-operator-bundle:v9.0.3-12 | * |
Red Hat OpenShift Container Platform 4.14 | RedHat | openshift4-wincw/windows-machine-config-rhel9-operator:9.0.3-12 | * |
Red Hat OpenShift Container Platform 4.14 | RedHat | openshift4/windows-machine-config-operator-bundle:v9.0.3-12 | * |