Improper Control of Dynamically-Managed Code Resources in vm2 - CVE-2023-29017
Published: April 10, 2023 / Updated: May 17, 2023
Vulnerability details
The vulnerability allows a remote attacker to escape sandbox restrictions.
The vulnerability exists due to improper handling of host objects passed to "Error.prepareStackTrace" in case of unhandled async errors. A remote attacker can pass specially crafted input to the application, escape sandbox restrictions and execute arbitrary code on the host.
Affected software
backstage/techdocs-common
API Gateway
API Manager
Multicluster Engine for Kubernetes
IBM Cloud Pak for Multicloud Management
Red Hat Advanced Cluster Management for Kubernetes
App Connect Enterprise Certified Container
IBM Cloud Pak for Watson AIOps
How to mitigate CVE-2023-29017
API Gateway - update to May 2023
API Manager - update to May 2023
backstage/techdocs-common - update to 1.13.0
Multicluster Engine for Kubernetes - addressed in versions 2.0.7, 2.1.5, 2.2.3
IBM Cloud Pak for Multicloud Management - update to 2.3.8
Red Hat Advanced Cluster Management for Kubernetes - addressed in versions 2.5.7, 2.6.4, 2.7.3
IBM Cloud Pak for Watson AIOps - update to 3.7.1
App Connect Enterprise Certified Container - addressed in versions 5.0.6, 8.1.0
Links to Public Exploits and PoC-codes
External References
Related Security Bulletins
- Sandbox escape in vm2 for Notde.js
- backstage update for vm2
- Multiple vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes
- Multiple vulnerabilities in Multicluster Engine for Kubernetes 2.2
- Multiple vulnerabilities in Multicluster Engine for Kubernetes 2.0
- Multiple vulnerabilities in Multicluster Engine for Kubernetes 2.1
- Red Hat Advanced Cluster Management for Kubernetes 2.5 update for vm2
- Red Hat Advanced Cluster Management for Kubernetes 2.6 update for vm2
- Multiple vulnerabilities in IBM Cloud Pak for Watson AIOps
- App Connect Enterprise Certified Container update for vm2
- Multiple vulnerabilities in Axway API Gateway and API Manager
- Multiple vulnerabilities in IBM Cloud Pak for Multicloud Management