Medium severity6.6OSV Advisory· Published Apr 16, 2025· Updated Jun 17, 2026
CVE-2023-32197
CVE-2023-32197
Description
A Improper Privilege Management vulnerability in SUSE rancher in RoleTemplateobjects when external=true is set can lead to privilege escalation in specific scenarios.This issue affects rancher: from 2.7.0 before 2.7.14, from 2.8.0 before 2.8.5.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/rancher/rancherGo | >= 2.7.0, < 2.8.9 | 2.8.9 |
github.com/rancher/rancherGo | >= 2.9.0, < 2.9.3 | 2.9.3 |
Affected products
11- osv-coords10 versionspkg:rpm/suse/govulncheck-vulndb&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP5pkg:rpm/suse/govulncheck-vulndb&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP6pkg:rpm/opensuse/govulncheck-vulndb&distro=openSUSE%20Leap%2015.5pkg:golang/github.com/rancher/rancherpkg:rpm/opensuse/govulncheck-vulndb&distro=openSUSE%20Tumbleweedpkg:rpm/suse/govulncheck-vulndb&distro=SUSE%20Package%20Hub%2012pkg:apk/chainguard/harvesterpkg:apk/chainguard/harvester-fips-webhookpkg:apk/chainguard/harvester-webhookpkg:rpm/opensuse/govulncheck-vulndb&distro=openSUSE%20Leap%2015.6
< 0.0.20241030T212825-150000.1.9.1+ 9 more
- (no CPE)range: < 0.0.20241030T212825-150000.1.9.1
- (no CPE)range: < 0.0.20241030T212825-150000.1.9.1
- (no CPE)range: < 0.0.20241030T212825-150000.1.9.1
- (no CPE)range: >= 2.7.0, < 2.8.9
- (no CPE)range: < 0.0.20241030T212825-1.1
- (no CPE)range: < 0.0.20241104T154416-5.1
- (no CPE)range: < 1.8.1-r1
- (no CPE)range: < 1.8.1-r0
- (no CPE)range: < 1.8.1-r1
- (no CPE)range: < 0.0.20241030T212825-150000.1.9.1
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.