Back

HIGH

Mirror-registry: local privilege escalation due to incorrect permissions in mirror-registry

Published May 9, 2025

Description

A flaw was found in the Mirror Registry. The quay-app container shipped as part of the Mirror Registry for OpenShift has write access to the `/etc/passwd`. This flaw allows a malicious actor with access to the container to modify the passwd file and elevate their privileges to the root user within that pod.

Affected products

Remediation

Vendor solution

This issue can be mitigated by setting this line in each mirror registry systemd configurations:

--security-opt=no-new-privileges

This would prevent any privilege escalation until the issue is fixed.

Red Hat statement

This issue was classified with and Important severity according to the severity ratings described at https://access.redhat.com/security/updates/classification. This rating was given because the attacker, when a successfully attack is performed, can elevate its privilege to the root user.

Red Hat mitigation

This issue can be mitigated by setting this line in each mirror registry systemd configurations: --security-opt=no-new-privileges This would prevent any privilege escalation until the issue is fixed.

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published May 9, 2025
Updated Feb 27, 2026
Reserved Apr 11, 2025
CISA Vulnrichment
Updated May 9, 2025
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Apr 11, 2024
ENISA EUVD
Assigner redhat
Published May 9, 2025
Updated Feb 27, 2026
Exploited since n/a
EUVD-2025-14164