CVE Database
/

CVE-2023-0229

Back to search

CVE-2023-0229

Published: Jan 25, 2023

Modified: Apr 1, 2025

PUBLISHED

Description

A flaw was found in github.com/openshift/apiserver-library-go, used in OpenShift 4.12 and 4.11, that contains an issue that can allow low-privileged users to set the seccomp profile for pods they control to "unconfined." By default, the seccomp profile used in the restricted-v2 Security Context Constraint (SCC) is "runtime/default," allowing users to disable seccomp for pods they can create and modify.

VendorProductVersions

n/a

github.com/openshift/apiserver-library-go

affected
openshift/apiserver-library-go 4.11

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now