VYPR
Medium severity5.4NVD Advisory· Published Aug 1, 2019· Updated Jun 17, 2026

CVE-2019-3884

CVE-2019-3884

Description

A vulnerability exists in the garbage collection mechanism of atomic-openshift. An attacker able spoof the UUID of a valid object from another namespace is able to delete children of those objects. Versions 3.6, 3.7, 3.8, 3.9, 3.10, 3.11 and 4.1 are affected.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • Red Hat/Openshift9 versions
    cpe:2.3:a:redhat:openshift:3.10:*:*:*:*:*:*:*+ 8 more
    • cpe:2.3:a:redhat:openshift:3.10:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift:3.11:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift:3.6:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift:3.7:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift:3.8:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift:3.9:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openshift:4.1:*:*:*:*:*:*:*
    • (no CPE)range: 3.6, 3.7, 3.8, 3.9, 3.10, 3.11, 4.1
    • (no CPE)range: 3.6, 3.7, 3.8, 3.9, 3.10, 3.11, 4.1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.