Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-3262


A flaw was found in Openshift. A pod with a DNSPolicy of "ClusterFirst" may incorrectly resolve the hostname based on a service provided. This flaw allows an attacker to supply an incorrect name with the DNS search policy, affecting confidentiality and availability.


Published

2022-12-08T16:15:13.293

Last Modified

2025-04-23T16:15:24.557

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.1 (HIGH)

Weaknesses
  • Type: Primary
    CWE-453
  • Type: Secondary
    CWE-1188
  • Type: Primary
    CWE-1188

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application redhat openshift 4.9 Yes

References