7
CVSSv3

CVE-2019-19352

Published: 24/03/2021 Updated: 12/02/2023
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
CVSS v3 Base Score: 7 | Impact Score: 5.9 | Exploitability Score: 1
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/presto as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openshift container platform 4.0

Vendor Advisories

Synopsis Moderate: OpenShift Container Platform 443 presto-container security update Type/Severity Security Advisory: Moderate Topic An update for presto-container is now available for Red Hat OpenShift Container Platform 44Red Hat Product Security has rated this update as having a security impact of Mo ...