Unauthorized Access to /API/helm/verify Endpoint in Openshift

CVE-2024-7079
6.5MEDIUM

Key Information

Vendor
Red Hat
Status
Red Hat Openshift Container Platform 3.11
Red Hat Openshift Container Platform 4
Vendor
CVE Published:
24 July 2024

Summary

A flaw was found in the Openshift console. The /API/helm/verify endpoint is tasked to fetch and verify the installation of a Helm chart from a URI that is remote HTTP/HTTPS or local. Access to this endpoint is gated by the authHandlerWithUser() middleware function. Contrary to its name, this middleware function does not verify the validity of the user's credentials. As a result, unauthenticated users can access this endpoint.

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Risk change from: 6.5 to: 7.1 - (HIGH)

  • Risk change from: 6.5 to: 7.1 - (HIGH)

  • Risk change from: 6.5 to: 7.1 - (HIGH)

  • Risk change from: null to: 5.4 - (MEDIUM)

  • Vulnerability Reserved.

  • Reported to Red Hat.

  • Vulnerability published.

Collectors

NVD DatabaseMitre Database

Credit

This issue was discovered by Thibault Guittet (Red Hat).
.