Database/Container, Kubernetes & orchestration
RHACM cluster-proxy: caller-supplied impersonation headers grant cluster-admin on managed clusters
Impact
service-proxy appends its own impersonation group headers without stripping the ones the caller sent, and the spoke ServiceAccount it proxies as holds unrestricted impersonation rights. An authenticated principal on the hub can therefore set Impersonate-Group and act as cluster-admin on every managed cluster attached to that hub. For a fleet operator this is the worst shape of a control-plane bug: one hub credential becomes full administrative control of all spokes at once - node pools, GPU Operator and device-plugin configuration, every tenant namespace, and every secret in them. Red Hat rates it CVSS 8.5 with scope change and high attack complexity.
Who can reach it
An authenticated hub principal - any account with credentials on the RHACM/MCE hub that can drive a proxied request. No access to the managed clusters themselves is needed; the proxy supplies that.
What to do
Apply the RHSA errata listed for your multicluster-engine and RHACM stream (RHSA-2026:46885 / 47388 / 47735 / 47949 / 47953). The fix ships as updated operator images, so the rollout is a hub-side operator upgrade and a restart of the cluster-proxy/service-proxy pods - no node drain and no spoke reboot. Until it lands, tighten who holds credentials on the hub and audit spoke API audit logs for requests carrying Impersonate-Group.
References
Related entries
- Argo Workflows (workflow executor, artifact driver logging): The executor logs the whole artifact driver struct, so S3CVE-2026-42295 · Argo Workflows (workflow executor, artifact driver logging)High
- Argo Workflows (Argo Server, ConfigMap-backed sync limit provider): The Sync Service's ConfigMap provider runs noCVE-2026-42297 · Argo Workflows (Argo Server, ConfigMap-backed sync limit provider)High
- KubeVela: a ComponentDefinition can point terraform.path at a symlink and OOM-kill the cluster-wide controllerCVE-2026-55108 · KubeVela vela-core controller (Terraform remote configuration loader, GetTerraformConfigurationFromRemote)High
- CloudNativePG: managed-role passwords exposed via pg_stat_statements, enabling command execution in the DB podCVE-2026-55765 · CloudNativePG operator (managed-role password handling)High
- Kamaji: colliding tenant name normalization lets one tenant read or destroy another's control-plane stateCVE-2026-62246 · Kamaji hosted control plane manager (TenantControlPlane datastore schema/user derivation)High
- Docker / moby: Command execution via crafted remote git build path in `docker build`CVE-2019-13139 · Docker / mobyHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.