Description
A flaw was found in the Mirror Registry. The quay-app container shipped as part of the Mirror Registry for OpenShift has write access to the `/etc/passwd`. This flaw allows a malicious actor with access to the container to modify the passwd file and elevate their privileges to the root user within that pod.
Problem types
Product status
Any version before 2
v2.0.7-9 (rpm) before *
Timeline
2025-04-11: | Reported to Red Hat. |
2024-04-11: | Made public. |
Credits
Red Hat would like to thank Antony Di Scala and Mike Whale for reporting this issue.
References
access.redhat.com/errata/RHBA-2025:9645 (RHBA-2025:9645)
access.redhat.com/security/cve/CVE-2025-3528
bugzilla.redhat.com/show_bug.cgi?id=2359143 (RHBZ#2359143)