Vulnerability CVE-2023-5408


Published: 2023-11-02

Description:
A privilege escalation flaw was found in the node restriction admission plugin of the kubernetes api server of OpenShift. A remote attacker who modifies the node role label could steer workloads from the control plane and etcd nodes onto different worker nodes and gain broader access to the cluster.

 References:
https://access.redhat.com/errata/RHSA-2023:6130
https://access.redhat.com/security/cve/CVE-2023-5408
https://bugzilla.redhat.com/show_bug.cgi?id=2242173
https://github.com/openshift/kubernetes/pull/1736

Copyright 2026, cxsecurity.com

 

Back to Top