漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
An incorrect access control flaw was found in the operator, openshift-service-mesh/istio-rhel8-operator all versions through 1.1.3. This flaw allows an attacker with a basic level of access to the cluster to deploy a custom gateway/pod to any namespace, potentially gaining access to privileged service account tokens. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
CVSS Information
N/A
Vulnerability Type
授权机制缺失
Vulnerability Title
Red Hat OpenShift Service Mesh istio-rhel8-operator 安全漏洞
Vulnerability Description
Red Hat OpenShift Service Mesh是美国红帽(Red Hat)公司的一套用于连接、管理和监视基于微服务的应用程序的平台。 Red Hat OpenShift Service Mesh中的istio-rhel8-operator中存在安全漏洞。攻击者可利用该漏洞向用户空间中部署网关镜像。
CVSS Information
N/A
Vulnerability Type
N/A