Логотип exploitDog
bind:"CVE-2023-2728"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-2728"

Количество 18

Количество 18

ubuntu логотип

CVE-2023-2728

около 2 лет назад

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2023-2728

около 2 лет назад

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-2728

около 2 лет назад

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-2728

около 2 лет назад

Users may be able to launch containers that bypass the mountable secre ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-cgcv-5272-97pr

около 2 лет назад

Kubernetes mountable secrets policy bypass

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3260-1

почти 2 года назад

Security update for kubernetes1.24

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2544-1

около 2 лет назад

Security update for kubernetes1.24

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2543-1

около 2 лет назад

Security update for kubernetes1.23

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2542-1

около 2 лет назад

Security update for kubernetes1.23

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2541-1

около 2 лет назад

Security update for kubernetes1.18

EPSS: Низкий
oracle-oval логотип

ELSA-2023-25546

около 2 лет назад

ELSA-2023-25546: olcne security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-25545

около 2 лет назад

ELSA-2023-25545: olcne security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-12564

около 2 лет назад

ELSA-2023-12564: kubernetes security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-12563

около 2 лет назад

ELSA-2023-12563: kubernetes security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-12562

около 2 лет назад

ELSA-2023-12562: kubernetes security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-12561

около 2 лет назад

ELSA-2023-12561: kubernetes security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3343-1

11 месяцев назад

Security update for kubernetes1.24

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3341-1

11 месяцев назад

Security update for kubernetes1.23

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-2728

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

CVSS3: 6.5
4%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-2728

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

CVSS3: 6.5
4%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-2728

Users may be able to launch containers that bypass the mountable secrets policy enforced by the ServiceAccount admission plugin when using ephemeral containers. The policy ensures pods running with a service account may only reference secrets specified in the service account’s secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.

CVSS3: 6.5
4%
Низкий
около 2 лет назад
debian логотип
CVE-2023-2728

Users may be able to launch containers that bypass the mountable secre ...

CVSS3: 6.5
4%
Низкий
около 2 лет назад
github логотип
GHSA-cgcv-5272-97pr

Kubernetes mountable secrets policy bypass

CVSS3: 6.5
4%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3260-1

Security update for kubernetes1.24

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:2544-1

Security update for kubernetes1.24

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2543-1

Security update for kubernetes1.23

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2542-1

Security update for kubernetes1.23

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2541-1

Security update for kubernetes1.18

около 2 лет назад
oracle-oval логотип
ELSA-2023-25546

ELSA-2023-25546: olcne security update (IMPORTANT)

около 2 лет назад
oracle-oval логотип
ELSA-2023-25545

ELSA-2023-25545: olcne security update (IMPORTANT)

около 2 лет назад
oracle-oval логотип
ELSA-2023-12564

ELSA-2023-12564: kubernetes security update (IMPORTANT)

около 2 лет назад
oracle-oval логотип
ELSA-2023-12563

ELSA-2023-12563: kubernetes security update (IMPORTANT)

около 2 лет назад
oracle-oval логотип
ELSA-2023-12562

ELSA-2023-12562: kubernetes security update (IMPORTANT)

около 2 лет назад
oracle-oval логотип
ELSA-2023-12561

ELSA-2023-12561: kubernetes security update (IMPORTANT)

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:3343-1

Security update for kubernetes1.24

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3341-1

Security update for kubernetes1.23

11 месяцев назад

Уязвимостей на страницу