The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.
| Software | From | Fixed in |
|---|---|---|
| redhat / openshift | - | 1.0.x |
| redhat / openshift_origin | 1.0.5 | 1.0.5.x |