Description
A vulnerability was found in OVN Kubernetes in versions up to and including 0.3.0 where the Egress Firewall does not reliably apply firewall rules when there is multiple DNS rules. It could lead to potentially lose of confidentiality, integrity or availability of a service.
References
https://bugzilla.redhat.com/show_bug.cgi?id=1949188
Issue TrackingThird Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1949188
Issue TrackingThird Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
5.6 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2021-06-02T14:15:10.320Z
4 years agoLast modified
2024-11-21T05:21:41.413Z
1 year ago