2025年3月25日星期二

Kubernetes Multiple Vulnerabilities

Kubernetes Multiple Vulnerabilities

Release Date: 25 Mar 2025

RISK: Medium Risk

TYPE: Operating Systems - Application Platforms

Multiple vulnerabilities were identified in Kubernetes. A remote attacker could exploit some of these vulnerabilities to trigger denial of service condition, sensitive information disclosure and remote code execution on the targeted system.


Impact

  • Information Disclosure
  • Remote Code Execution
  • Denial of Service

System / Technologies affected

  • Kubernetes Ingress NGINX Controller v1.12.0, v1.11.0 - 1.11.4 and All versions prior to v1.11.0

Solutions

Before installation of the software, please visit the software vendor web-site for more details.

Apply fixes issued by the vendor:

  • Update to Kubernetes Ingress NGINX Controller  v1.11.5, v1.12.1, or any later version

Vulnerability Identifier


Source


Related Link

沒有留言:

發佈留言

惡意軟件警報 - 零售商成為 Scattered Spider 黑客組織勒索軟件攻擊的目標

惡意軟件警報 - 零售商成為 Scattered Spider 黑客組織勒索軟件攻擊的目標 發佈日期: 2025年05月02日 類別: ...