High severity8.8NVD Advisory· Published Apr 30, 2018· Updated Jun 17, 2026
CVE-2018-1102
CVE-2018-1102
Description
A flaw was found in source-to-image function as shipped with Openshift Enterprise 3.x. An improper path validation of tar files in ExtractTarStreamFromTarReader in tar/tar.go leads to privilege escalation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Red Hat, Inc./atomic-openshiftv5Range: as shipped with Openshift Enterprise 3.x
Patches
Vulnerability mechanics
References
11- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchVendor Advisory
- access.redhat.com/errata/RHSA-2018:1227nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1229nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1231nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1233nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1235nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1237nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1239nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1241nvdVendor Advisory
- access.redhat.com/errata/RHSA-2018:1243nvdVendor Advisory
- access.redhat.com/errata/RHSA-2019:0036nvdVendor Advisory
News mentions
0No linked articles in our index yet.