CVE-2018-1069

Source
https://cve.org/CVERecord?id=CVE-2018-1069
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-1069.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2018-1069
Published
2018-03-09T14:29:00.217Z
Modified
2026-07-08T14:59:19.969764Z
Severity
  • 7.1 (High) CVSS_V3 - CVSS:3.0/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Red Hat OpenShift Enterprise version 3.7 is vulnerable to access control override for container network filesystems. An attacker could override the UserId and GroupId for GlusterFS and NFS to read and write any data on the network filesystem.

References

Affected packages

Git / github.com/openshift/origin

Affected ranges

Type
GIT
Repo
https://github.com/openshift/origin
Events
Database specific
{
    "source": "CPE_STRING",
    "cpe": "cpe:2.3:a:redhat:openshift:3.7:*:*:*:enterprise:*:*:*",
    "extracted_events": [
        {
            "introduced": "3.7"
        },
        {
            "last_affected": "3.7"
        }
    ]
}

Affected versions

3.*
3.7
v3.*
v3.7.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-1069.json"