Bugzilla – Bug 1202442
VUL-0: CVE-2022-2835: coredns: DNS Redirection of Internal Services
Last modified: 2022-08-16 13:15:05 UTC
rh#2118542 It was found that a malicious user could reroute internal calls to some internal services that were being accessed by the FQDN in a format of <service>.<namespace>.svc References - https://cwe.mitre.org/data/definitions/923.html - https://docs.openshift.com/container-platform/4.10/architecture/admission-plug-ins.html#admission-plug-ins-default_admission-plug-ins References: https://bugzilla.redhat.com/show_bug.cgi?id=2118542 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2022-2835