CVE Published: 17/05/2024 |
CVE Updated: 23/11/2024 |
CVE Year: 2024 Source: redhat |
Vendor: |
Product: Status : PUBLISHED
CVE-2024-5042 Description
A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.