在 kube-compare 中发现了一个安全漏洞。当处理 引用路径时,该工具错误地执行了不受信任容器镜像的入口点(entrypoint),而不是仅仅从已停止的容器中提取数据。这使得远程攻击者能够在操作者的工作站上实现任意代码执行。如果 Docker 守护进程需要提权,不受信任的代码可能以通过守护进程提权获得的 root 权限执行,从而带来严重的安全风险。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Pen Drive Powered by Red Hat Lightspeed | any |
affected |
| Red Hat | Red Hat OpenShift Container Platform 4 | any |
unknown |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Pen Drive Powered by Red Hat Lightspeed | - |
cpe:/a:redhat:pdrive_lightspeed:1
|
|
| Red Hat | Red Hat OpenShift Container Platform 4 | - |
cpe:/a:redhat:openshift:4
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101292 | 8.2 HIGH | Artemis-core-client: unsafe reflection in apache activemq artemis federation message deser |
| CVE-2026-86330 | 7.2 HIGH | Noobaa-core: noobaa-core: os command injection in cluster_internal_api.set_hostname_intern |
| CVE-2026-97023 | 7.1 HIGH | Flatpak: flatpak: arbitrary file deletion in root context via path traversal in deploy dir |
| CVE-2026-102010 | 7.0 HIGH | Gcc-toolset-15-gcc: gcc: gcc-toolset-16: gcc: denial of service via use-after-free in bina |
| CVE-2026-96740 | 6.5 MEDIUM | Streamshub/console: console-operator: streams for apache kafka console: unfiltered kafka c |
| CVE-2026-97026 | 3.9 LOW | Flatpak: flatpak: world-writable temporary child repositories in system-helper cache path |
| CVE-2026-101333 | 3.7 LOW | Keycloak-services: keycloak-services: unbounded metric series creation via idp tag on brok |
| CVE-2026-97027 | 3.6 LOW | Flatpak: flatpak: denial of service via unsanitized keys in exported desktop entry / d-bus |
| CVE-2026-97025 | 3.2 LOW | Flatpak: flatpak: world-readable oci authentication token in system-helper cache path |
No comments yet