Логотип exploitDog
bind:CVE-2025-4563
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-4563

Количество 6

Количество 6

ubuntu логотип

CVE-2025-4563

5 месяцев назад

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller properly validates resource claim statuses during pod status updates but fails to perform equivalent validation during pod creation. This allows a compromised node to create mirror pods that access unauthorized dynamic resources, potentially leading to privilege escalation.

CVSS3: 2.7
EPSS: Низкий
redhat логотип

CVE-2025-4563

5 месяцев назад

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller properly validates resource claim statuses during pod status updates but fails to perform equivalent validation during pod creation. This allows a compromised node to create mirror pods that access unauthorized dynamic resources, potentially leading to privilege escalation.

CVSS3: 2.7
EPSS: Низкий
nvd логотип

CVE-2025-4563

5 месяцев назад

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller properly validates resource claim statuses during pod status updates but fails to perform equivalent validation during pod creation. This allows a compromised node to create mirror pods that access unauthorized dynamic resources, potentially leading to privilege escalation.

CVSS3: 2.7
EPSS: Низкий
msrc логотип

CVE-2025-4563

2 месяца назад

Nodes can bypass dynamic resource allocation authorization checks

CVSS3: 2.7
EPSS: Низкий
debian логотип

CVE-2025-4563

5 месяцев назад

A vulnerability exists in the NodeRestriction admission controller whe ...

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-hj2p-8wj8-pfq4

5 месяцев назад

kubernetes allows nodes to bypass dynamic resource allocation authorization checks

CVSS3: 2.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-4563

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller properly validates resource claim statuses during pod status updates but fails to perform equivalent validation during pod creation. This allows a compromised node to create mirror pods that access unauthorized dynamic resources, potentially leading to privilege escalation.

CVSS3: 2.7
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-4563

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller properly validates resource claim statuses during pod status updates but fails to perform equivalent validation during pod creation. This allows a compromised node to create mirror pods that access unauthorized dynamic resources, potentially leading to privilege escalation.

CVSS3: 2.7
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-4563

A vulnerability exists in the NodeRestriction admission controller where nodes can bypass dynamic resource allocation authorization checks. When the DynamicResourceAllocation feature gate is enabled, the controller properly validates resource claim statuses during pod status updates but fails to perform equivalent validation during pod creation. This allows a compromised node to create mirror pods that access unauthorized dynamic resources, potentially leading to privilege escalation.

CVSS3: 2.7
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-4563

Nodes can bypass dynamic resource allocation authorization checks

CVSS3: 2.7
0%
Низкий
2 месяца назад
debian логотип
CVE-2025-4563

A vulnerability exists in the NodeRestriction admission controller whe ...

CVSS3: 2.7
0%
Низкий
5 месяцев назад
github логотип
GHSA-hj2p-8wj8-pfq4

kubernetes allows nodes to bypass dynamic resource allocation authorization checks

CVSS3: 2.7
0%
Низкий
5 месяцев назад

Уязвимостей на страницу