VDB
Sign up
CRITICAL9.8

GHSA-m3fm-h5jp-q79p

Authorization bypass in Openshift

Quick fix

GHSA-m3fm-h5jp-q79p — github.com/openshift/origin: upgrade to the fixed version with the command below.

go get github.com/openshift/origin@v1.1.1

Details

Openshift allows remote attackers to gain privileges by updating a build configuration that was created with an allowed type to a type that is not allowed.

Are you affected?

Enter the version of the package you're using.

Affected packages

Go/github.com/openshift/origin
Introduced in: 0Fixed in: 1.1.1
Fixgo get github.com/openshift/origin@v1.1.1

References