#VU82607 Permissions, Privileges, and Access Controls in Red Hat OpenShift Container Platform - CVE-2023-5408
Published: October 31, 2023
Red Hat OpenShift Container Platform
Red Hat Inc.
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to improperly imposed security restrictions in the node restriction admission plugin of the kubernetes api server of OpenShift. A local user can modify the node role label and steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.