Back to bug 1297910

Who When What Removed Added
Kurt Seifried 2016-01-12 18:43:42 UTC Depends On 1297917
Kurt Seifried 2016-01-12 18:43:48 UTC Depends On 1297918
Kurt Seifried 2016-01-12 18:49:01 UTC Blocks 1297922
Salvatore Bonaccorso 2016-01-12 20:32:51 UTC CC carnil
Kurt Seifried 2016-01-13 18:38:31 UTC Blocks 1298133
CC amaris
Kurt Seifried 2016-01-13 18:41:23 UTC Whiteboard impact=moderate,public=20160111,reported=20160111,source=internet,cvss2=4.0/AV:N/AC:L/Au:S/C:N/I:P/A:N,cwe=CWE-285,openshift-enterprise-3/Security=affected impact=moderate,public=20160111,reported=20160111,source=internet,cvss2=4.0/AV:N/AC:L/Au:S/C:N/I:P/A:N,cwe=CWE-285,openshift-enterprise-3/Security=affected,rhel-7/kubernetes=new,fedora-all/kubernetes=affected
Kurt Seifried 2016-01-15 04:38:22 UTC Alias CVE-2016-1905
Kurt Seifried 2016-01-15 04:38:28 UTC Summary Kubernetes api server: patch operation should use patched object to check admission control CVE-2016-1905 Kubernetes api server: patch operation should use patched object to check admission control
Kurt Seifried 2016-01-15 20:43:27 UTC Doc Text It was discovered that Kubernetes did not properly check user permissions when handling certain requests. An authenticated remote attacker could use this flaw to gain additional access to resources such as RAM and disk space.
Summer Long 2016-01-18 01:08:46 UTC CC slong
Doc Text It was discovered that Kubernetes did not properly check user permissions when handling certain requests. An authenticated remote attacker could use this flaw to gain additional access to resources such as RAM and disk space. An authorization flaw was discovered in Kubernetes; the API server did not properly check user permissions when handling certain requests. An authenticated remote attacker could use this flaw to gain additional access to resources such as RAM and disk space.
DeShuai Ma 2016-01-22 02:44:22 UTC CC dma
Kurt Seifried 2016-03-22 04:37:05 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2016-03-22 00:37:05 UTC
Adam Mariš 2016-11-08 16:05:55 UTC CC amaris
Cedric Buissart 2018-04-10 12:43:34 UTC CC jchaloup
Whiteboard impact=moderate,public=20160111,reported=20160111,source=internet,cvss2=4.0/AV:N/AC:L/Au:S/C:N/I:P/A:N,cwe=CWE-285,openshift-enterprise-3/Security=affected,rhel-7/kubernetes=new,fedora-all/kubernetes=affected impact=moderate,public=20160111,reported=20160111,source=internet,cvss2=4.0/AV:N/AC:L/Au:S/C:N/I:P/A:N,cwe=CWE-285,openshift-enterprise-3/Security=affected,rhel-7/kubernetes=wontfix,fedora-all/kubernetes=affected
Product Security DevOps Team 2019-09-29 13:41:49 UTC Whiteboard impact=moderate,public=20160111,reported=20160111,source=internet,cvss2=4.0/AV:N/AC:L/Au:S/C:N/I:P/A:N,cwe=CWE-285,openshift-enterprise-3/Security=affected,rhel-7/kubernetes=wontfix,fedora-all/kubernetes=affected

Back to bug 1297910