vulnerability

Red Hat OpenShift: CVE-2016-3711: haproxy: Setting cookie containing internal IP address of a pod

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Jun 8, 2016
Added
Jun 18, 2018
Modified
Aug 11, 2025

Description


HAproxy in Red Hat OpenShift Enterprise 3.2 and OpenShift Origin allows local users to obtain the internal IP address of a pod by reading the "OPENSHIFT_[namespace]_SERVERID" cookie.

Solution

linuxrpm-upgrade-atomic-openshift
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.