A vulnerability was found in OVN Kubernetes in versions up to and including 0.3.0 where the Egress Firewall does not reliably apply firewall rules when there is multiple DNS rules. It could lead to potentially lose of confidentiality, integrity or availability of a service.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1949188 | Issue Tracking Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1949188 | Issue Tracking Third Party Advisory |
Configurations
History
21 Nov 2024, 06:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugzilla.redhat.com/show_bug.cgi?id=1949188 - Issue Tracking, Third Party Advisory |
Information
Published : 2021-06-02 16:15
Updated : 2024-11-21 06:21
NVD link : CVE-2021-3499
Mitre link : CVE-2021-3499
CVE.ORG link : CVE-2021-3499
JSON object : View
Products Affected
ovn
- ovn-kubernetes
CWE
CWE-863
Incorrect Authorization