Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-6476

Опубликовано: 09 янв. 2024
Источник: debian
EPSS Низкий

Описание

A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get any amount of memory/cpu, circumventing the kubernetes scheduler and potentially resulting in a denial of service in the node.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cri-oitppackage

EPSS

Процентиль: 39%
0.00168
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 1 года назад

A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get any amount of memory/cpu, circumventing the kubernetes scheduler and potentially resulting in a denial of service in the node.

CVSS3: 6.5
redhat
больше 1 года назад

A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get any amount of memory/cpu, circumventing the kubernetes scheduler and potentially resulting in a denial of service in the node.

CVSS3: 6.5
nvd
больше 1 года назад

A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get any amount of memory/cpu, circumventing the kubernetes scheduler and potentially resulting in a denial of service in the node.

CVSS3: 7.5
redos
около 1 года назад

Уязвимость Cri-o

CVSS3: 6.5
github
больше 1 года назад

CRI-O's pods can break out of resource confinement on cgroupv2

EPSS

Процентиль: 39%
0.00168
Низкий