GHSA-jgfp-53c3-624w
Dashboard / Vulnerabilities / GHSA-jgfp-53c3-624w
GHSA-jgfp-53c3-624w
Summary: Node Denial of Service via kubelet Checkpoint API
Details: A security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node's disk.
References: https://nvd.nist.gov/vuln/detail/CVE-2025-0426, https://github.com/kubernetes/kubernetes/issues/130016, https://github.com/advisories/GHSA-jgfp-53c3-624w, https://github.com/kubernetes/kubernetes, https://groups.google.com/g/kubernetes-security-announce/c/KiODfu8i6w8, http://www.openwall.com/lists/oss-security/2025/02/13/1
Affected packages
Package
Name: k8s.io/kubernetes
Purl: pkg:golang/k8s.io/kubernetes
Affected ranges
Type: SEMVER
Events:
