Files
CVEs-PoC/2020/CVE-2020-8029.md
T
2024-06-18 02:51:15 +02:00

18 lines
901 B
Markdown

### [CVE-2020-8029](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-8029)
![](https://img.shields.io/static/v1?label=Product&message=SUSE%20CaaS%20Platform%204.5&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=skuba%3C%20https%3A%2F%2Fgithub.com%2FSUSE%2Fskuba%2Fpull%2F1416%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-732%3A%20Incorrect%20Permission%20Assignment%20for%20Critical%20Resource&color=brighgreen)
### Description
A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to gain access to the kublet key. This issue affects: SUSE CaaS Platform 4.5 skuba versions prior to https://github.com/SUSE/skuba/pull/1416.
### POC
#### Reference
- https://bugzilla.suse.com/show_bug.cgi?id=1177362
#### Github
No PoCs found on GitHub currently.