openshift-hyperkube vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the openshift-hyperkube package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Use of a Broken or Risky Cryptographic Algorithm

<0:4.10.0-202306170106.p0.g16bcd69.assembly.stream.el7
  • H
Improper Handling of Unicode Encoding

<0:4.10.0-202306170106.p0.g16bcd69.assembly.stream.el7
  • H
Authentication Bypass

<0:4.10.0-202308291228.p0.g26fdcdf.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • C
Incorrect Privilege Assignment

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
Cross-site Scripting (XSS)

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
Information Exposure

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
Creation of Temporary File With Insecure Permissions

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
Improper Input Validation

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
Server-Side Request Forgery (SSRF)

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • H
Authorization Bypass Through User-Controlled Key

*
  • M
Incorrect Permission Assignment for Critical Resource

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • M
Improper Certificate Validation

*
  • M
Improper Input Validation

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • M
Improper Validation of Array Index

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • M
Improper Validation of Array Index

<0:4.7.0-202102060108.p0.git.97095.7271b90.el7
  • M
Improper Certificate Validation

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • L
Improper Input Validation

*
  • H
Link Following

<0:4.8.0-202109180335.p0.git.a620f50.assembly.stream.el7
  • H
Link Following

<0:4.6.0-202109180038.p0.git.d5ed12c.assembly.stream.el7
  • H
Link Following

<0:4.7.0-202109172126.p0.git.bbbc079.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • M
Cross-site Scripting (XSS)

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • H
Directory Traversal

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Improper Input Validation

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • M
Improper Check for Dropped Privileges

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Incorrect Authorization

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • M
Cross-site Scripting (XSS)

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • H
Allocation of Resources Without Limits or Throttling

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Improper Input Validation

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Deserialization of Untrusted Data

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Link Following

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Missing Authorization

<0:4.6.0-202012190744.p0.git.94235.c62c6f7.el7
  • M
Improper Output Neutralization for Logs

<0:4.7.0-202102060108.p0.git.97095.7271b90.el7
  • M
Improper Output Neutralization for Logs

<0:4.6.0-202101160934.p0.git.94242.fc5242e.el7
  • M
Improper Output Neutralization for Logs

<0:4.6.0-202012051246.p0.git.94231.efc9027.el7
  • H
Missing Authorization

<0:4.6.0-202012190744.p0.git.94235.c62c6f7.el7
  • H
Information Exposure

<0:4.6.0-202012190744.p0.git.94235.c62c6f7.el7
  • H
Missing Authorization

<0:4.6.0-202012190744.p0.git.94235.c62c6f7.el7
  • M
Authentication Bypass

<0:4.7.0-202102060108.p0.git.97095.7271b90.el7
  • M
Covert Timing Channel

<0:4.7.0-202102060108.p0.git.97095.7271b90.el7
  • M
Information Exposure

<0:4.7.0-202102060108.p0.git.97095.7271b90.el7
  • M
Resource Exhaustion

<0:4.5.0-202007012112.p0.git.0.582d7fc.el7
  • M
Information Exposure

<0:4.5.0-202007012112.p0.git.0.582d7fc.el7
  • M
Resource Exhaustion

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • M
Information Exposure Through Log Files

<0:4.1.27-201912021146.git.0.a40116f.el7
  • M
Authentication Bypass by Primary Weakness

<0:4.1.27-201912021146.git.0.a40116f.el7
  • M
Link Following

<0:4.1.21-201910220952.git.0.493dbf6.el7
  • L
Incorrect Permission Assignment for Critical Resource

<0:4.1.24-201911080309.git.0.c41acf2.el7
  • H
Resource Exhaustion

<0:4.1.20-201910101746.git.0.a80aad5.el7
  • M
Directory Traversal

<0:4.1.16-201909090609.git.0.2f97059.el7
  • H
OS Command Injection

<0:4.2.20-202002140432.git.0.47933cb.el7
  • H
OS Command Injection

<0:4.1.37-202002280447.git.0.543873e.el7
  • H
OS Command Injection

<0:4.3.3-202002140552.git.0.e38059c.el7
  • M
Resource Exhaustion

<0:4.4.0-202008250319.p0.git.0.d653415.el7
  • H
Resource Exhaustion

<0:4.5.0-202008130146.p0.git.0.aaf1d57.el7
  • M
Improper Access Control

<0:4.1.10-201908060758.git.0.d81afa6.el7
  • C
Arbitrary Code Injection

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.3.10-202003300855.git.0.da48c1d.el7
  • M
Resource Exhaustion

<0:4.2.29-202004120346.git.0.d948116.el7
  • M
Resource Exhaustion

<0:4.3.9-202003230116.git.0.ebf9a26.el7
  • M
Man-in-the-Middle (MitM)

<0:4.5.0-202007012112.p0.git.0.582d7fc.el7
  • M
Man-in-the-Middle (MitM)

<0:4.3.31-202007280738.p0.git.0.9884401.el7
  • M
Man-in-the-Middle (MitM)

<0:4.4.0-202007090832.p0.git.0.bc32fb1.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202008130146.p0.git.0.aaf1d57.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202008130146.p0.git.0.aaf1d57.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202008130146.p0.git.0.aaf1d57.el7
  • H
Cross-site Scripting (XSS)

<0:4.5.0-202008130146.p0.git.0.aaf1d57.el7
  • H
XML External Entity (XXE) Injection

<0:4.6.0-202012190744.p0.git.94235.c62c6f7.el7
  • H
XML External Entity (XXE) Injection

<0:4.6.0-202012190744.p0.git.94235.c62c6f7.el7
  • M
Open Redirect

<0:4.4.0-202012052258.p0.git.0.0fd57a4.el7
  • M
Open Redirect

<0:4.6.0-202010022112.p0.git.94033.ef41184.el7
  • M
Information Exposure

<0:4.2.36-202006211650.p0.git.0.1fe246f.el7
  • M
Information Exposure

<0:4.4.0-202006061254.git.1.dc84fb4.el7
  • M
Information Exposure

<0:4.3.25-202006060952.git.1.96c30f6.el7
  • M
Cross-site Scripting (XSS)

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • M
Information Exposure

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • M
Cross-site Scripting (XSS)

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • M
Cross-site Scripting (XSS)

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • M
Cross-site Scripting (XSS)

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • M
Cross-site Scripting (XSS)

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • H
Cross-site Scripting (XSS)

<0:4.4.0-202006061254.git.1.dc84fb4.el7
  • H
Cross-site Scripting (XSS)

<0:4.3.25-202006060952.git.1.96c30f6.el7
  • H
Cross-site Scripting (XSS)

<0:4.4.0-202006061254.git.1.dc84fb4.el7
  • H
Cross-site Scripting (XSS)

<0:4.3.25-202006060952.git.1.96c30f6.el7
  • H
Cross-site Scripting (XSS)

<0:4.4.0-202006061254.git.1.dc84fb4.el7
  • H
Cross-site Scripting (XSS)

<0:4.3.25-202006060952.git.1.96c30f6.el7
  • H
Cross-site Request Forgery (CSRF)

<0:4.4.0-202006061254.git.1.dc84fb4.el7
  • H
Cross-site Request Forgery (CSRF)

<0:4.3.25-202006060952.git.1.96c30f6.el7
  • C
Improper Privilege Management

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
HTTP Request Smuggling

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • C
Incorrect Authorization

<0:4.10.0-202303221742.p0.g16bcd69.assembly.stream.el7
  • H
Allocation of Resources Without Limits or Throttling

<0:4.10.0-202306170106.p0.g16bcd69.assembly.stream.el7
  • L
Resource Exhaustion

*
  • M
Information Exposure

*
  • M
Improperly Controlled Sequential Memory Allocation

*
  • M
HTTP Request Smuggling

*
  • M
Improper Input Validation

*
  • L
Insufficient Entropy

*
  • M
Improper Privilege Management

<0:4.10.0-202207192015.p0.g012e945.assembly.stream.el7
  • M
Integer Overflow or Wraparound

<0:4.10.0-202207192015.p0.g012e945.assembly.stream.el7
  • M
Buffer Overflow

<0:4.10.0-202207192015.p0.g012e945.assembly.stream.el7
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Use of a Broken or Risky Cryptographic Algorithm

*
  • M
Resource Exhaustion

<0:4.10.0-202207192015.p0.g012e945.assembly.stream.el7
  • M
Unchecked Return Value

<0:4.10.0-202207192015.p0.g012e945.assembly.stream.el7
  • M
Incorrect Authorization

<0:4.10.0-202207192015.p0.g012e945.assembly.stream.el7
  • M
Integer Overflow or Wraparound

*
  • M
Information Exposure

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Information Exposure

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Information Exposure

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Improper Input Validation

*
  • M
Access of Resource Using Incompatible Type ('Type Confusion')

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • M
Improper Input Validation

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • L
Improper Input Validation

*
  • M
Incorrect Default Permissions

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Incorrect Default Permissions

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • H
Directory Traversal

<0:4.3.1-202001310552.git.0.331f390.el7
  • M
Use of Insufficiently Random Values

<0:4.3.0-202001131753.git.0.0aee6a8.el7
  • L
Resource Exhaustion

*
  • M
Race Condition

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Race Condition

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Use After Free

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Use After Free

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Improper Input Validation

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Improper Input Validation

<0:4.9.0-202202111950.p0.gb93fd35.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.8.0-202107300027.p0.git.38b3ecc.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.7.0-202107292242.p0.git.558d959.assembly.stream.el7
  • M
Improper Input Validation

<0:4.7.0-202107292242.p0.git.558d959.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107300027.p0.git.38b3ecc.assembly.stream.el7
  • M
Improper Input Validation

<0:4.7.0-202107292242.p0.git.558d959.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107300027.p0.git.38b3ecc.assembly.stream.el7
  • H
Time-of-check Time-of-use (TOCTOU)

<0:4.5.0-202105121820.p0.git.d8ef5ad.el7
  • H
Time-of-check Time-of-use (TOCTOU)

<0:4.6.0-202105150940.p0.git.9caf8fe.el7
  • M
Improper Validation of Certificate with Host Mismatch

<0:4.10.0-202202250816.p0.ge419edf.assembly.stream.el7
  • H
Heap-based Buffer Overflow

<0:4.3.3-202002140552.git.0.e38059c.el7
  • H
Heap-based Buffer Overflow

<0:4.3.1-202001310552.git.0.331f390.el7
  • M
Incorrect Calculation

<0:4.7.0-202103181538.p0.git.97109.7576cdc.el7
  • M
Incorrect Calculation

<0:4.8.0-202107161820.p0.git.051ac4f.assembly.stream.el7
  • M
Information Exposure

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Information Exposure

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Improper Certificate Validation

<0:4.7.0-202102060108.p0.git.97095.7271b90.el7
  • M
Improper Certificate Validation

<0:4.6.0-202101160934.p0.git.94242.fc5242e.el7
  • L
Race Condition

<0:4.5.0-202102261511.p0.git.0.f0229b9.el7
  • L
Race Condition

<0:4.4.0-202011130111.p0.git.0.4861dfa.el7
  • M
Race Condition

<0:4.6.0-202101160934.p0.git.94242.fc5242e.el7
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.4.0-202011130111.p0.git.0.4861dfa.el7
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.5.0-202102261511.p0.git.0.f0229b9.el7
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:4.6.0-202101160934.p0.git.94242.fc5242e.el7
  • H
Insecure Temporary File

<0:4.5.0-202102050524.p0.git.0.9229406.el7
  • H
Improper Certificate Validation

<0:4.3.1-202001310552.git.0.331f390.el7
  • M
HTTP Request Smuggling

<0:4.2.4-201911041319.git.0.c7d2111.el7
  • H
Resource Exhaustion

<0:4.1.14-201908290858.git.0.3bd3467.el7
  • H
Resource Exhaustion

<0:4.1.14-201908290858.git.0.3bd3467.el7
  • M
Improper Input Validation

<0:4.7.0-202107292242.p0.git.558d959.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107300027.p0.git.38b3ecc.assembly.stream.el7
  • M
Insufficient Session Expiration

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Insufficient Session Expiration

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.8.0-202107300027.p0.git.38b3ecc.assembly.stream.el7
  • M
Resource Exhaustion

<0:4.9.0-202110080828.p0.git.894a78b.assembly.stream.el7
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Improper Input Validation

<0:4.7.0-202107292242.p0.git.558d959.assembly.stream.el7
  • M
Improper Input Validation

<0:4.8.0-202107300027.p0.git.38b3ecc.assembly.stream.el7
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Improper Locking

<0:4.7.0-202104090228.p0.git.97111.77863f8.el7
  • M
Improper Handling of Length Parameter Inconsistency

<0:4.5.0-202007012112.p0.git.0.582d7fc.el7
  • M
Use After Free

<0:4.5.0-202007012112.p0.git.0.582d7fc.el7
  • M
Use After Free

<0:4.4.0-202007090832.p0.git.0.bc32fb1.el7
  • H
Insecure Temporary File

<0:4.5.0-202102050524.p0.git.0.9229406.el7