VYPR
High severity8.5NVD Advisory· Published Jul 2, 2018· Updated Jun 17, 2026

CVE-2018-10843

CVE-2018-10843

Description

source-to-image component of Openshift Container Platform before versions atomic-openshift 3.7.53, atomic-openshift 3.9.31 is vulnerable to a privilege escalation which allows the assemble script to run as the root user in a non-privileged container. An attacker can use this flaw to open network connections, and possibly other actions, on the host which are normally only available to a root user.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Range: <3.7.53 || >=3.9,<3.9.31
  • cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:*range: <3.7.53
    • cpe:2.3:a:redhat:openshift_container_platform:3.9.31:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift_container_platform:3.9:*:*:*:*:*:*:*
    • (no CPE)range: <3.7.53, <3.9.31

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.