VYPR

Openshift Assisted Installer

by Red Hat

Source repositories

CVEs (2)

  • CVE-2021-3684MedMar 24, 2023
    risk 0.29cvss 5.5epss 0.00

    A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets were leaked as plaintext in the installation logs. An authenticated user could exploit this by re-using the image pull secret to pull container images from the…

  • CVE-2019-19335MedMar 18, 2020
    risk 0.29cvss 4.4epss 0.00

    During installation of an OpenShift 4 cluster, the `openshift-install` command line tool creates an `auth` directory, with `kubeconfig` and `kubeadmin-password` files. Both files contain credentials used to authenticate to the OpenShift API server, and are incorrectly assigned…