Medium severity6.3NVD Advisory· Published Feb 18, 2022· Updated Jun 17, 2026
CVE-2021-3948
CVE-2021-3948
Description
An incorrect default permissions vulnerability was found in the mig-controller. Due to an incorrect cluster namespaces handling an attacker may be able to migrate a malicious workload to the target cluster, impacting confidentiality, integrity, and availability of the services located on that cluster.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:redhat:migration_toolkit:1.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:redhat:migration_toolkit:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:redhat:migration_toolkit:1.5:*:*:*:*:containers:*:*
- cpe:2.3:a:redhat:migration_toolkit:1.6:*:*:*:*:containers:*:*
- mig-controller/mig-controllerdescription
Patches
Vulnerability mechanics
References
1- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.