CVE Published: 30/04/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: redhat |
Vendor: Red Hat, Inc. |
Product: atomic-openshift Status : PUBLISHED
CVE-2018-1102 Description
A flaw was found in source-to-image function as shipped with Openshift Enterprise 3.x. An improper path validation of tar files in ExtractTarStreamFromTarReader in tar/tar.go leads to privilege escalation.