Kubernetes — открытое программное обеспечение для оркестровки контейнеризированных приложений — автоматизации их развёртывания, масштабирования и координации в условиях кластера.
Релизный цикл, информация об уязвимостях
График релизов
Количество 318
GHSA-q78c-gwqw-jcmc
Kubernetes privilege escalation vulnerability
GHSA-7fxm-f474-hf8w
Kubernetes privilege escalation vulnerability

CVE-2023-3955
A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.
CVE-2023-3955
A security issue was discovered in Kubernetes where a user that can c ...

CVE-2023-3676
A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.
CVE-2023-3676
A security issue was discovered in Kubernetes where a user that can c ...

CVE-2023-3676
A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.
GHSA-35c7-w35f-xwgh
Kube-proxy may unintentionally forward traffic

CVE-2021-25736
Kube-proxy on Windows can unintentionally forward traffic to local processes listening on the same port (“spec.ports[*].port”) as a LoadBalancer Service when the LoadBalancer controller does not set the “status.loadBalancer.ingress[].ip” field. Clusters where the LoadBalancer controller sets the “status.loadBalancer.ingress[].ip” field are unaffected.
CVE-2021-25736
Kube-proxy on Windows can unintentionally forward traffic to local pr ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
GHSA-q78c-gwqw-jcmc Kubernetes privilege escalation vulnerability | CVSS3: 8.8 | 1% Низкий | больше 1 года назад | |
GHSA-7fxm-f474-hf8w Kubernetes privilege escalation vulnerability | CVSS3: 8.8 | 33% Средний | больше 1 года назад | |
![]() | CVE-2023-3955 A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes. | CVSS3: 8.8 | 1% Низкий | больше 1 года назад |
CVE-2023-3955 A security issue was discovered in Kubernetes where a user that can c ... | CVSS3: 8.8 | 1% Низкий | больше 1 года назад | |
![]() | CVE-2023-3676 A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes. | CVSS3: 8.8 | 33% Средний | больше 1 года назад |
CVE-2023-3676 A security issue was discovered in Kubernetes where a user that can c ... | CVSS3: 8.8 | 33% Средний | больше 1 года назад | |
![]() | CVE-2023-3676 A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes. | CVSS3: 8.8 | 33% Средний | больше 1 года назад |
GHSA-35c7-w35f-xwgh Kube-proxy may unintentionally forward traffic | CVSS3: 5.8 | 0% Низкий | больше 1 года назад | |
![]() | CVE-2021-25736 Kube-proxy on Windows can unintentionally forward traffic to local processes listening on the same port (“spec.ports[*].port”) as a LoadBalancer Service when the LoadBalancer controller does not set the “status.loadBalancer.ingress[].ip” field. Clusters where the LoadBalancer controller sets the “status.loadBalancer.ingress[].ip” field are unaffected. | CVSS3: 5.8 | 0% Низкий | больше 1 года назад |
CVE-2021-25736 Kube-proxy on Windows can unintentionally forward traffic to local pr ... | CVSS3: 5.8 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу