CVE-2023-5056

CVSS V2 None CVSS V3 None
Description
A flaw was found in the Skupper operator, which may permit a certain configuration to create a service account that would allow an authenticated attacker in the adjacent cluster to view deployments in all namespaces in the cluster. This issue permits unauthorized viewing of information outside of the user's purview.
Overview
  • CVE ID
  • CVE-2023-5056
  • Assigner
  • redhat
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-12-18T13:43:07.807Z
  • Last Modified Date
  • 2024-05-01T20:21:19.763Z
References
Reference URL Reference Tags
https://access.redhat.com/errata/RHSA-2023:6219 vendor-advisory x_refsource_REDHAT
https://access.redhat.com/security/cve/CVE-2023-5056 vdb-entry x_refsource_REDHAT
https://bugzilla.redhat.com/show_bug.cgi?id=2239517 issue-tracking x_refsource_REDHAT
History
Created Old Value New Value Data Type Notes
2024-06-25 05:39:37 Added to TrackCVE