ZeroHour

CVE-2020-14336

CVSS 3.1
6.5 medium
EPSS
<1%p59
Published
()
Modified
Description

A flaw was found in the Restricted Security Context Constraints (SCC), where it allows pods to craft custom network packets. This flaw allows an attacker to cause a denial of service attack on an OpenShift Container Platform cluster if they can deploy pods. The highest threat from this vulnerability is to system availability.

Vendors
redhat
Products
openshift container platform
Weakness
CWE-770
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.