# CVE-2025-2842

## Summary

- **CVE ID:** CVE-2025-2842
- **Severity:** MEDIUM
- **CVSS Score:** 4.3 (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)
- **CWE:** CWE-200
- **Published:** Apr 2, 2025
- **Last Modified:** Sep 8, 2026

## Description

A flaw was found in the Tempo Operator. When the Jaeger UI Monitor Tab functionality is enabled in a Tempo instance managed by the Tempo Operator, the Operator creates a ClusterRoleBinding for the Service Account of the Tempo instance to grant the cluster-monitoring-view ClusterRole.
This can be exploited if a user has 'create' permissions on TempoStack and 'get' permissions on Secret in a namespace (for example, a user has ClusterAdmin permissions for a specific namespace), as the user can read the token of the Tempo service account and therefore has access to see all cluster metrics.

## Affected Products

- Unknown product (0)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.1 (sha256:233132300a9f5f019047a414b240f5b32c7563af8107bb52c4395892fdcd0fe0)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.1 (sha256:be2ec2e3d3b21748cfe3b9382f7fc1f6c72d5f380fc97773518c254c6e5794ca)
- Red Hat — Red Hat OpenShift distributed tracing 3.5 (rhosdt-3.5-1743162265)
- Red Hat — Red Hat OpenShift distributed tracing 3.5 (rhosdt-3.5-1744028971)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.3 (rhosdt-3.5-1743162265)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.3 (rhosdt-3.5-1744028971)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.1 (rhosdt-3.5-1743162265)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.1 (rhosdt-3.5-1744028971)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.2 (rhosdt-3.5-1743162265)
- Red Hat — Red Hat OpenShift distributed tracing 3.5.2 (rhosdt-3.5-1744028971)

## References

- [CNA](https://access.redhat.com/errata/RHSA-2025:3607)
- [CNA](https://access.redhat.com/errata/RHSA-2025:3740)
- [CNA](https://access.redhat.com/security/cve/CVE-2025-2842)
- [CNA](https://bugzilla.redhat.com/show_bug.cgi?id=2355219)
- [CNA](https://github.com/grafana/tempo-operator/pull/1144)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.38%
- **EPSS Percentile:** 32.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._