CVE-2020-1750: Red Hat Machine-Config-Operator
Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.
A flaw was found in the machine-config-operator that causes an OpenShift node to become unresponsive when a container consumes a large amount of memory. An attacker could use this flaw to deny access to schedule new pods in the OpenShift cluster. This was fixed in openshift/machine-config-operator 4.4.3, openshift/machine-config-operator 4.3.25, openshift/machine-config-operator 4.2.36.
Affected products
- Red Hat Machine-Config-Operator: from 4.2.0, before 4.2.36 (fixed in 4.2.36); from 4.3.0, before 4.3.25 (fixed in 4.3.25); from 4.4.0, before 4.4.3 (fixed in 4.4.3)
Published 2021-06-07. Last modified 2026-06-17.