Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-47827

Опубликовано: 28 окт. 2024
Источник: nvd
CVSS3: 5.7
CVSS3: 4.8
EPSS Низкий

Описание

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Due to a race condition in a global variable in 3.6.0-rc1, the argo workflows controller can be made to crash on-command by any user with access to execute a workflow. This vulnerability is fixed in 3.6.0-rc2.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:argo_workflows_project:argo_workflows:3.6.0:rc1:*:*:*:kubernetes:*:*

EPSS

Процентиль: 42%
0.00199
Низкий

5.7 Medium

CVSS3

4.8 Medium

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 4.8
redhat
около 1 года назад

Argo Workflows is an open source container-native workflow engine for orchestrating parallel jobs on Kubernetes. Due to a race condition in a global variable in 3.6.0-rc1, the argo workflows controller can be made to crash on-command by any user with access to execute a workflow. This vulnerability is fixed in 3.6.0-rc2.

CVSS3: 5.7
github
около 1 года назад

Argo Workflows Controller: Denial of Service via malicious daemon Workflows

suse-cvrf
около 1 года назад

Security update for govulncheck-vulndb

EPSS

Процентиль: 42%
0.00199
Низкий

5.7 Medium

CVSS3

4.8 Medium

CVSS3

Дефекты

CWE-362