A flaw was found in Openshift. A pod with a DNSPolicy of "ClusterFirst" may incorrectly resolve the hostname based on a service provided. This flaw allows an attacker to supply an incorrect name with the DNS search policy, affecting confidentiality and availability.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2128858 | Issue Tracking Vendor Advisory |
Configurations
Information
Published : 2022-12-08 08:15
Updated : 2022-12-12 07:52
NVD link : CVE-2022-3262
Mitre link : CVE-2022-3262
JSON object : View
CWE
CWE-1188
Insecure Default Initialization of Resource
Products Affected
redhat
- openshift