Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1564305 - (CVE-2018-1002100) CVE-2018-1002100 kubernetes: Kubectl copy doesn't check for paths outside of it's destination directory
CVE-2018-1002100 kubernetes: Kubectl copy doesn't check for paths outside of ...
Status: NEW
Product: Security Response
Classification: Other
Component: vulnerability (Show other bugs)
unspecified
All Linux
medium Severity medium
: ---
: ---
Assigned To: Red Hat Product Security
impact=moderate,public=20180317,repor...
: Security
Depends On: 1564307 1564337 1567207 1567208 1577292 1577293
Blocks: 1569667
  Show dependency treegraph
 
Reported: 2018-04-05 20:09 EDT by Jason Shepherd
Modified: 2018-10-27 17:43 EDT (History)
21 users (show)

See Also:
Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
An improper validation flaw exists in the kubernetes 'kubectl cp' command. An attacker who could trick a user into using the command to copy files locally, from a pod, could override files outside of the target directory of the command.
Story Points: ---
Clone Of:
Environment:
Last Closed:
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description Jason Shepherd 2018-04-05 20:09:51 EDT
When using kubectl to cp files to a pod, if the container returns a malformed tarfile with paths like, '/some/remote/dir/../../../../tmp/foo' kubectl writes this to /tmp/foo instead of /some/local/dir/tmp/foo.

https://github.com/kubernetes/kubernetes/issues/61297
Comment 1 Jason Shepherd 2018-04-05 20:10:05 EDT
Acknowledgments:

Name: Michael Hanselmann (hansmi.ch)
Comment 2 Jason Shepherd 2018-04-05 20:10:44 EDT
Created kubernetes tracking bugs for this issue:

Affects: fedora-all [bug 1564307]
Comment 6 Cedric Buissart 2018-04-12 03:54:02 EDT
Statement:

Kubernetes support is moving from Red Hat Enterprise Linux to OpenShift Container Platform.  Kubernetes and its dependencies will no longer be updated through the Extras channel. Instead, the Red Hat customers are advised to use Red Hat's supported Kubernetes-based products such as Red Hat OpenShift Container Platform.

Note You need to log in before you can comment on or make changes to this bug.