NA

CVE-2022-4318

Published: 25/09/2023 Updated: 03/05/2024
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kubernetes cri-o -

redhat openshift container platform for arm64 4.12

redhat openshift container platform for linuxone 4.12

redhat openshift container platform for power 4.12

redhat openshift container platform ibm z systems 4.12

fedoraproject extra packages for enterprise linux 8.0

fedoraproject fedora 36

fedoraproject fedora 37

redhat openshift container platform for arm64 4.11

redhat openshift container platform for linuxone 4.11

redhat openshift container platform for power 4.11

redhat openshift container platform ibm z systems 4.11

Vendor Advisories

Synopsis Moderate: OpenShift Container Platform 41134 bug fix and security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 41134 is now available with updates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShift C ...
Synopsis Moderate: OpenShift Container Platform 41134 packages and security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 41134 is now available with updates to pac ...
Synopsis Moderate: OpenShift Container Platform 4126 packages and security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Red Hat OpenShift Container Platform release 4126 is now available with updates to packa ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...