CVE-2016-2142: Red Hat Openshift
Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Red Hat OpenShift Enterprise 3.1 uses world-readable permissions on the /etc/origin/master/master-config.yaml configuration file, which allows local users to obtain Active Directory credentials by reading the file.
Affected products
- Red Hat Openshift: version 3.1 only
Published 2016-06-08. Last modified 2026-06-17.