Логотип exploitDog
bind:CVE-2022-31077
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-31077

Количество 2

Количество 2

nvd логотип

CVE-2022-31077

больше 3 лет назад

KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge. In affected versions a malicious message response from KubeEdge can crash the CSI Driver controller server by triggering a nil-pointer dereference panic. As a consequence, the CSI Driver controller will be in denial of service. This bug has been fixed in Kubeedge 1.11.0, 1.10.1, and 1.9.3. Users should update to these versions to resolve the issue. At the time of writing, no workaround exists.

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-x938-fvfw-7jh5

больше 3 лет назад

CloudCore CSI Driver: Malicious response from KubeEdge can crash CSI Driver controller server

CVSS3: 4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-31077

KubeEdge is built upon Kubernetes and extends native containerized application orchestration and device management to hosts at the Edge. In affected versions a malicious message response from KubeEdge can crash the CSI Driver controller server by triggering a nil-pointer dereference panic. As a consequence, the CSI Driver controller will be in denial of service. This bug has been fixed in Kubeedge 1.11.0, 1.10.1, and 1.9.3. Users should update to these versions to resolve the issue. At the time of writing, no workaround exists.

CVSS3: 4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-x938-fvfw-7jh5

CloudCore CSI Driver: Malicious response from KubeEdge can crash CSI Driver controller server

CVSS3: 4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу