Red Hat Bugzilla – Bug 1356195
CVE-2016-5392 Kubernetes: disclosure of information in multi tenant environments via watch-cache list
Last modified: 2018-08-31 17:38:33 EDT
Yanping Zhang of Red Hat reports: It is possible for one user to view another users data due to the kubernetes watch cache delivering the wrong data in a multi tenant environment.
Acknowledgments: Name: Yanping Zhang (Red Hat)
This issue has been fixed according to bug 1355915
This issue has been addressed in the following products: Red Hat OpenShift Enterprise 3.2 Via RHSA-2016:1427 https://access.redhat.com/errata/RHSA-2016:1427