Loading HuntDB...

GHSA-ccwq-5269-25p2

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

It was found that OpenShift Container Platform versions 3.6.x - 4.6.0 does not perform SSH Host Key checking when using ssh key authentication during builds. An attacker, with the ability to redirect network traffic, could use this to alter the resulting build output.

Related CVEs

Key Information

GHSA ID
GHSA-ccwq-5269-25p2
Published
May 24, 2022 4:47 PM
Last Modified
February 2, 2023 9:33 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 19, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.