7.8
CVSSv3

CVE-2019-19354

Published: 24/03/2021 Updated: 12/02/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hadoop as shipped in Red Hat Openshift 4. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openshift_container_platform

Vendor Advisories

Synopsis Moderate: OpenShift Container Platform 443 hadoop-container security update Type/Severity Security Advisory: Moderate Topic An update for hadoop-container is now available for Red Hat OpenShift Container Platform 44Red Hat Product Security has rated this update as having a security impact of Mo ...