A flaw was found in automationbroker/apb container in versions up to and including 2.0.4-1. This container grants all users sudoer permissions allowing an unauthorized user with access to the running container the ability to escalate their own privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1829674 | Issue Tracking Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1829674 | Issue Tracking Third Party Advisory |
Configurations
History
21 Nov 2024, 04:55
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugzilla.redhat.com/show_bug.cgi?id=1829674 - Issue Tracking, Third Party Advisory |
17 Aug 2022, 15:06
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:automationbroker:apb:*:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CWE | CWE-269 | |
References | (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=1829674 - Issue Tracking, Third Party Advisory |
16 Aug 2022, 21:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-08-16 21:15
Updated : 2024-11-21 04:55
NVD link : CVE-2020-10728
Mitre link : CVE-2020-10728
CVE.ORG link : CVE-2020-10728
JSON object : View
Products Affected
automationbroker
- apb