Information Exposure Affecting github.com/openshift/origin package, versions <1.2.0-rc1


0.0
low

Snyk CVSS

    Attack Complexity Low
Expand this section
NVD
3.3 low

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk ID SNYK-GOLANG-GITHUBCOMOPENSHIFTORIGIN-50038
  • published 17 Mar 2016
  • disclosed 17 Mar 2016
  • credit Unknown

Overview

Affected version of github.com/openshift/origin are vulnerable to Information Exposure. HAproxy in Red Hat OpenShift Enterprise 3.2 and OpenShift Origin allows local users to obtain the internal IP address of a pod by reading the OPENSHIFT_[namespace]_SERVERID cookie.