GO-2023-1864
Dashboard / Vulnerabilities / GO-2023-1864
Summary: Kubelet vulnerable to bypass of seccomp profile enforcement in k8s.io/kubernetes
Details: Kubelet vulnerable to bypass of seccomp profile enforcement in k8s.io/kubernetes
References: https://github.com/advisories/GHSA-xc8m-28vv-4pjc, https://github.com/kubernetes/kubernetes/issues/118690, https://github.com/kubernetes/kubernetes/pull/117020, https://github.com/kubernetes/kubernetes/pull/117116, https://github.com/kubernetes/kubernetes/pull/117117, https://github.com/kubernetes/kubernetes/pull/117118, https://github.com/kubernetes/kubernetes/pull/117147, https://groups.google.com/g/kubernetes-security-announce/c/QHmx0HOQa10, https://lists.fedoraproject.org/archives/list/[email protected]/message/43HDSKBKPSW53OW647B5ETHRWFFNHSRQ, https://lists.fedoraproject.org/archives/list/[email protected]/message/XBX4RL4UOC7JHWWYB2AJCKSUM7EG5Y5G
Affected packages
Package
Name: k8s.io/kubernetes
Purl: pkg:golang/k8s.io/kubernetes
Affected ranges
Type: SEMVER
Events:
