Red HatCVE-2026-15584
Pen Drive Powered by Red Hat Lightspeed: privilege escalation
High7.5CVE-2026-15584 · Published Jul 13, 2026 · updated Jul 14, 2026
A privilege escalation vulnerability was found in the incluster-checks tool for OpenShift. The tool creates privileged debug pods with host filesystem access in the shared default namespace, where any user with the standard edit role can exec into them and obtain root access on cluster nodes.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Pen Drive Powered by Red Hat Lightspeed Product | all versions | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-250
More Red Hat advisories
All Red Hat| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Jul 14 | Red Hat open5gs: out-of-bounds read | High8.6 | No fix yet |
| Jul 14 | Red Hat Enterprise Linux 10: denial of service | Medium5.9 | No fix yet |
| Jul 14 | Red Hat Enterprise Linux: integer overflow | Medium4.8 | No fix yet |
| Jul 14 | Red Hat Argo CD: remote code execution | High8.9 | 10.0.0 |
| Jul 13 | Red Hat OpenShift distributed tracing 3: improper authorization | Medium6.5 | No fix yet |
| Jul 13 | Red Hat OpenShift AI (RHOAI): information disclosure | High7.5 | No fix yet |