{"id":675104,"date":"2026-05-17T07:46:12","date_gmt":"2026-05-17T07:46:12","guid":{"rendered":"https:\/\/www.newsbeep.com\/ca\/675104\/"},"modified":"2026-05-17T07:46:12","modified_gmt":"2026-05-17T07:46:12","slug":"microsoft-rejects-critical-azure-vulnerability-report-no-cve-issued","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/ca\/675104\/","title":{"rendered":"Microsoft rejects critical Azure vulnerability report, no CVE issued"},"content":{"rendered":"<p style=\"text-align:center\"><img loading=\"lazy\" decoding=\"async\" alt=\"Azure\" height=\"800\" src=\"https:\/\/www.newsbeep.com\/ca\/wp-content\/uploads\/2026\/05\/microsoft-azure.jpg\" width=\"1600\"\/><\/p>\n<p>A security researcher claims Microsoft quietly fixed an Azure Backup for AKS vulnerability after rejecting his\u00a0report, and blocking a CVE from being issued.<\/p>\n<p>The researcher&#8217;s report describes\u00a0a\u00a0critical privilege escalation flaw that allowed cluster-admin access from the low-privileged &#8220;Backup Contributor&#8221; role.<\/p>\n<p>Microsoft disputes the claim, telling BleepingComputer the behavior was expected and that &#8220;no product changes were made,&#8221; despite the researcher documenting new permission checks and failed exploit attempts after disclosure, suggestive of a silent patch.<\/p>\n<p>CERT agrees it&#8217;s a bug, but Microsoft blocks CVE<\/p>\n<p>Security researcher Justin O&#8217;Leary <a href=\"http:\/\/olearysec.com\/research\/azure-backup-aks-silent-patch\/\" target=\"_blank\" rel=\"nofollow noopener\">discovered the security flaw<\/a>\u00a0this March,\u00a0and reported it to Microsoft on March 17.<\/p>\n<p>Microsoft Security Response Center (MSRC) rejected the report on April 13, claiming the issue only involved obtaining cluster-admin on a cluster where &#8220;the attacker already held administrator access,&#8221;\u00a0a characterization O&#8217;Leary says misrepresents the attack entirely.<\/p>\n<p>&#8220;This is factually incorrect,&#8221; states the researcher.<\/p>\n<p>&#8220;The vulnerability allows a user with zero Kubernetes permissions to gain cluster-admin. The attack does not require existing cluster access \u2014 it grants it.&#8221;<\/p>\n<p>O&#8217;Leary further says that Microsoft described the submission to MITRE as &#8220;AI-generated content,&#8221; something he says did not address the technical merits of the report.<\/p>\n<p>After the rejection, O&#8217;Leary escalated the issue to CERT Coordination Center, which independently validated the vulnerability on April 16 and, according to the researcher,\u00a0assigned it an identifier, VU#284781:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"CERT assigning the flaw a disclosure date and tracking identifier\" height=\"254\" src=\"https:\/\/www.newsbeep.com\/ca\/wp-content\/uploads\/2026\/05\/cert-vulnerability-scheduled.jpg\" width=\"600\"\/>CERT\/CC assigning the flaw a tracking identifier and\u00a0disclosure date<br \/>&#13;<br \/>\n\u200b\u200b\u200b\u200b\u200b\u200b\u200b(Justin O&#8217;Leary)<\/p>\n<p>CERT\/CC had initially\u00a0scheduled public disclosure for June 1, 2026, but that disclosure never happened.<\/p>\n<p>On May 4, Microsoft staff\u00a0reportedly contacted MITRE recommending against CVE assignment, again arguing the issue required pre-existing administrative access:<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"Microsoft blocks CVE\" height=\"231\" src=\"https:\/\/www.newsbeep.com\/ca\/wp-content\/uploads\/2026\/05\/microsoft-blocks-cve.jpg\" width=\"600\"\/>Microsoft recommending MITRE against a CVE issuance<br \/>&#13;<br \/>\n(Justin O&#8217;Leary)<\/p>\n<p>CERT\/CC later closed the case under <a href=\"https:\/\/www.cve.org\/resourcessupport\/allresources\/cnarules\" target=\"_blank\" rel=\"nofollow noopener\">CNA hierarchy rules<\/a>, effectively leaving Microsoft (which is a CNA) with final authority over CVE issuance for its own products.<\/p>\n<p>How the attack worked<\/p>\n<p data-end=\"1899\" data-start=\"1779\">Azure Backup for AKS uses <a href=\"https:\/\/learn.microsoft.com\/en-us\/azure\/backup\/azure-kubernetes-service-cluster-manage-backups\" target=\"_blank\" rel=\"nofollow noopener\">Trusted Access<\/a> to grant backup extensions cluster-admin privileges inside Kubernetes clusters.<\/p>\n<p data-end=\"1899\" data-start=\"1779\">According to O&#8217;Leary, the flaw allowed anyone with only the Backup Contributor role on a backup vault to trigger that Trusted Access relationship without already having Kubernetes permissions.<\/p>\n<p data-end=\"2359\" data-start=\"2095\">An attacker could enable backup on a target AKS cluster, causing Azure to automatically configure Trusted Access with cluster-admin privileges. From there, an attacker could extract secrets through backup operations or restore malicious workloads into the cluster.<\/p>\n<p data-end=\"2556\" data-start=\"2361\">O&#8217;Leary classified the issue as a <a href=\"https:\/\/cwe.mitre.org\/data\/definitions\/441.html\" target=\"_blank\" rel=\"nofollow noopener\">Confused Deputy<\/a> vulnerability (CWE-441), where Azure RBAC and Kubernetes RBAC trust boundaries interacted in a manner\u00a0that bypassed expected authorization controls.<\/p>\n<p>Microsoft says no changes made, behavior says otherwise<\/p>\n<p data-end=\"2761\" data-start=\"2613\">BleepingComputer reached out to Microsoft to understand if\u00a0the tech giant considered this finding to be\u00a0a valid security vulnerability.<\/p>\n<p>A Microsoft spokesperson told BleepingComputer:<\/p>\n<p class=\"bc_quote\">&#8220;Our assessment concluded that this is not a security vulnerability, but rather expected behavior that requires pre-existing administrative privileges within the customer\u2019s environment. Therefore, no product changes were made to address this report and no CVE or CVSS score were issued.&#8221;<\/p>\n<p>However, following the disclosure of his report this month, O&#8217;Leary observed that the original attack path no longer works.<\/p>\n<p data-end=\"2915\" data-start=\"2852\">&#8220;Current behavior returns errors that did not exist in March 2026,&#8221; he states:<\/p>\n<p>ERROR: UserErrorTrustedAccessGatewayReturnedForbidden<br \/>&#13;<br \/>\n&#8220;The Trusted Access role binding is missing\/has gotten removed&#8221;<\/p>\n<p data-end=\"3233\" data-start=\"3035\">According to O&#8217;Leary, Azure Backup for AKS now requires Trusted Access to be manually configured before backup can be enabled, reversing the earlier behavior where Azure configured it automatically.<\/p>\n<p data-end=\"3525\" data-start=\"3235\">He also observed additional permission checks that were absent during his original testing in March. The vault MSI now requires Reader permissions on both the AKS cluster and snapshot resource group, while the AKS cluster MSI requires Contributor permissions on the snapshot resource group.<\/p>\n<p data-end=\"3525\" data-start=\"3235\">In other words, the vulnerability appears to have been\u00a0fixed, but Microsoft has neither\u00a0issued a public advisory\u00a0nor notified customers.<\/p>\n<p>The visibility problem for defenders<\/p>\n<p data-end=\"3781\" data-start=\"3672\">Without a CVE or advisory, defenders have little visibility into the exposure window or remediation timeline.<\/p>\n<p data-end=\"4017\" data-start=\"3783\">&#8220;Organizations that granted Backup Contributor between an unknown start date and May 2026 were exposed to privilege escalation,&#8221; writes the researcher.<\/p>\n<p data-end=\"4017\" data-start=\"3783\">&#8220;Without a CVE, security teams cannot track this exposure. Silent patching protects vendors, not customers.&#8221;<\/p>\n<p data-end=\"4017\" data-start=\"3783\">The case highlights a structural problem with no easy fix.<\/p>\n<p data-end=\"4017\" data-start=\"3783\">Disputes between <a href=\"https:\/\/www.csoonline.com\/article\/4124766\/when-responsible-disclosure-becomes-unpaid-labor.html\" target=\"_blank\" rel=\"nofollow noopener\">security researchers and major vendors<\/a>\u00a0over severity, exploitability, and disclosure have become common in recent years, especially as vulnerability disclosure programs face increasing volumes of reports.<\/p>\n<p data-end=\"4569\" data-start=\"4347\">Some open-source maintainers have also publicly complained that <a href=\"https:\/\/daniel.haxx.se\/blog\/2026\/01\/26\/the-end-of-the-curl-bug-bounty\/\" target=\"_blank\" rel=\"nofollow noopener\">AI-assisted reports are overwhelming<\/a> bug bounty and security triage systems, making it harder for legitimate findings to receive timely attention. Cases where <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/uber-ignores-vulnerability-that-lets-you-send-any-email-from-ubercom\/\" target=\"_blank\" rel=\"nofollow noopener\">big tech ignored<\/a>\u00a0patching valid\u00a0flaws despite repeated contact\u00a0by different\u00a0researchers\u00a0are not uncommon either.<\/p>\n<p data-end=\"4763\" data-is-last-node=\"\" data-is-only-node=\"\" data-start=\"4571\">Without a framework that realigns incentives for all parties, responsible disclosure risks becoming a bureaucratic exercise that serves no one\u2014least of all the organizations left exposed in the dark.<\/p>\n<p>        <a href=\"https:\/\/hubs.li\/Q048zztN0\" target=\"_blank\" rel=\"noopener nofollow\"><br \/>\n            <img decoding=\"async\" alt=\"article image\" src=\"https:\/\/www.newsbeep.com\/ca\/wp-content\/uploads\/2026\/05\/validation-gap.jpg\" class=\"b-lazy\"\/><\/a><\/p>\n<p>Automated pentesting tools deliver real value, but they were built to answer one question: can an attacker move through the network? They were not built to test whether your controls block threats, your detection rules fire, or your cloud configs hold.<\/p>\n<p>This guide covers the 6 surfaces you actually need to validate.<\/p>\n<p>        <a class=\"article-link\" href=\"https:\/\/hubs.li\/Q048zztN0\" target=\"_blank\" rel=\"noopener nofollow\">Download Now<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"A security researcher claims Microsoft quietly fixed an Azure Backup for AKS vulnerability after rejecting his\u00a0report, and blocking&hellip;\n","protected":false},"author":2,"featured_media":675105,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[49,48,61],"class_list":["post-675104","post","type-post","status-publish","format-standard","has-post-thumbnail","category-technology","tag-ca","tag-canada","tag-technology"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/675104","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/comments?post=675104"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/675104\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media\/675105"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media?parent=675104"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/categories?post=675104"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/tags?post=675104"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}