Security Advisory

CVE-2019-19355

7
HIGH

Vulnerability Description

An insecure modification vulnerability in the /etc/passwd file was found in the openshift/ocp-release-operator-sdk. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. This CVE is specific to the openshift/ansible-operator-container as shipped in Openshift 4.
Published Date March 18, 2020
Official Source NIST NVD Advisory