1.9
CVSSv2

CVE-2015-8945

Published: 05/08/2016 Updated: 05/08/2016
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 5.1 | Impact Score: 3.6 | Exploitability Score: 1.4
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

openshift-node in OpenShift Origin 1.1.6 and previous versions improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information by reading the systemd journal.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openshift origin

Vendor Advisories

openshift-node in OpenShift Origin 116 and earlier improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information by reading the systemd journal ...