VendorsRed Hatopenshift_container_platform4.13
Vulnerabilities

Red Hat OpenShift Container Platform 4.13

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10CVEs
CVE-2024-9341
Podman: buildah: cri-o: fips crypto-policy directory mounting issue in containers/common go library
Published 2024-10-01 · Modified
8.2EPSS 0.010
CVE-2024-5154
Cri-o: malicious container can create symlink on host
Published 2024-06-12 · Modified
8.1EPSS 0.012
CVE-2023-1260
Kube-apiserver: privesc
Published 2023-09-24 · Modified
8.0EPSS 0.016
CVE-2024-9675
Buildah: buildah allows arbitrary directory mount
Published 2024-10-09 · Modified
7.8EPSS 0.004
CVE-2024-12085
Rsync: info leak via uninitialized stack contents
Published 2025-01-14 · Modified
7.5EPSS 0.088
CVE-2025-6021
Libxml2: integer overflow in xmlbuildqname() leads to stack buffer overflow in libxml2
Published 2025-06-12 · Modified
7.5EPSS 0.014
CVE-2023-6476
Cri-o: pods are able to break out of resource confinement on cgroupv2
Published 2024-01-09 · Modified
7.5EPSS 0.009
CVE-2023-5408
Openshift: modification of node role labels
Published 2023-11-02 · Modified
7.2EPSS 0.011
CVE-2024-9676
Podman: buildah: cri-o: symlink traversal vulnerability in the containers/storage library can cause denial of service (dos)
Published 2024-10-15 · Modified
6.5EPSS 0.013
CVE-2024-1725
Kubevirt-csi: persistentvolume allows access to hcp's root node
Published 2024-03-07 · Modified
6.5EPSS 0.006