CVE-2024-25133

A flaw was found in the Hive ClusterDeployments resource in OpenShift Dedicated. In certain conditions, this issue may allow a developer account on a Hive-enabled cluster to obtain cluster-admin privileges by executing arbitrary commands on the hive/hive-controllers pod.
Configurations

No configuration.

History

06 Feb 2025, 09:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/security/cve/CVE-2024-25133 -
Summary
  • (es) Se encontró una falla en Hive ClusterDeployments resource en OpenShift Dedicated. En determinadas condiciones, este problema puede permitir que una cuenta de desarrollador en un clúster habilitado para Hive obtenga privilegios de administrador de clúster mediante la ejecución de comandos arbitrarios en el pod hive/hive-controllers.

31 Dec 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-31 15:15

Updated : 2025-02-06 09:15


NVD link : CVE-2024-25133

Mitre link : CVE-2024-25133

CVE.ORG link : CVE-2024-25133


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control