CVE-2026-71473: Improperly Controlled Modification of Dynamically-Determined Object Attributes in Red Hat Red Hat Advanced Cluster Management for Kubernetes 2.11
A flaw was found in the `search-v2-operator` component. A user with specific administrative permissions on a managed cluster can exploit a vulnerability that allows them to inject arbitrary configuration data. This manipulation can override critical settings, leading to the replacement of container images. This ultimately results in container image injection on the managed cluster, potentially compromising its integrity.
AI Analysis
Technical Summary
This vulnerability arises from improper control over dynamically-determined object attributes in the search-v2-operator component. A user with patch managedclusteraddons permission can exploit this flaw by injecting arbitrary Helm values through the addon.open-cluster-management.io/values annotation on a ManagedClusterAddOn resource. This injection can override critical settings, resulting in container image replacement on the managed cluster, which may lead to privilege escalation and arbitrary code execution. Red Hat has published an advisory but has not provided a patch or mitigation that meets their criteria for ease of use, applicability, or stability.
Potential Impact
An attacker with specific administrative permissions can manipulate configuration data to replace container images on the managed cluster. This compromises the integrity of the cluster, enabling privilege escalation and arbitrary code execution. The vulnerability impacts confidentiality and integrity with no availability impact. The CVSS v3.1 base score is 8.5 (high severity), reflecting network attack vector, low complexity, low privileges required, no user interaction, and changed scope.
Mitigation Recommendations
Red Hat currently does not offer a mitigation or official fix that meets their standards for deployment and stability. Users should monitor Red Hat's advisory for updates. Until a fix or mitigation is available, restricting administrative permissions on managed clusters to trusted users is advisable to reduce risk.
CVE-2026-71473: Improperly Controlled Modification of Dynamically-Determined Object Attributes in Red Hat Red Hat Advanced Cluster Management for Kubernetes 2.11
Description
A flaw was found in the `search-v2-operator` component. A user with specific administrative permissions on a managed cluster can exploit a vulnerability that allows them to inject arbitrary configuration data. This manipulation can override critical settings, leading to the replacement of container images. This ultimately results in container image injection on the managed cluster, potentially compromising its integrity.
CVSS v3.1
Score 8.5high
Affected software
Red Hat
Red Hat Advanced Cluster Management for Kubernetes 2.11
Red Hat
Red Hat Advanced Cluster Management for Kubernetes 2.13
Red Hat
Red Hat Advanced Cluster Management for Kubernetes 2.14
Red Hat
Red Hat Advanced Cluster Management for Kubernetes 2.15
Red Hat
Red Hat Advanced Cluster Management for Kubernetes 2.16
Red Hat
Red Hat Advanced Cluster Management for Kubernetes 2.17
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability arises from improper control over dynamically-determined object attributes in the search-v2-operator component. A user with patch managedclusteraddons permission can exploit this flaw by injecting arbitrary Helm values through the addon.open-cluster-management.io/values annotation on a ManagedClusterAddOn resource. This injection can override critical settings, resulting in container image replacement on the managed cluster, which may lead to privilege escalation and arbitrary code execution. Red Hat has published an advisory but has not provided a patch or mitigation that meets their criteria for ease of use, applicability, or stability.
Potential Impact
An attacker with specific administrative permissions can manipulate configuration data to replace container images on the managed cluster. This compromises the integrity of the cluster, enabling privilege escalation and arbitrary code execution. The vulnerability impacts confidentiality and integrity with no availability impact. The CVSS v3.1 base score is 8.5 (high severity), reflecting network attack vector, low complexity, low privileges required, no user interaction, and changed scope.
Mitigation Recommendations
Red Hat currently does not offer a mitigation or official fix that meets their standards for deployment and stability. Users should monitor Red Hat's advisory for updates. Until a fix or mitigation is available, restricting administrative permissions on managed clusters to trusted users is advisable to reduce risk.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- redhat
- Date Reserved
- 2026-08-06T19:34:07.970Z
- Cvss Version
- 3.1
- State
- PUBLISHED
- Vendor Advisory Urls
- [{"url":"https://access.redhat.com/security/cve/CVE-2026-71473","vendor":"Red Hat"}]
Threat ID: 6a7cefadbf8831d5393cbeb8
Added to database: 08/12/2026, 22:11:57 UTC
Last enriched: 08/12/2026, 22:26:08 UTC
Last updated: 09/25/2026, 13:47:48 UTC
Views: 64
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.