CVE-2019-11251
Summary
| CVE | CVE-2019-11251 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-02-03 16:15:00 UTC |
| Updated | 2020-02-06 17:37:00 UTC |
| Description | The Kubernetes kubectl cp command in versions 1.1-1.12, and versions prior to 1.13.11, 1.14.7, and 1.15.4 allows a combination of two symlinks provided by tar output of a malicious container to place a file outside of the destination directory specified in the kubectl cp invocation. This could be used to allow an attacker to place a nefarious file using a symlink, outside of the destination tree. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Google Groups |
MLIST |
groups.google.com |
Mailing List, Third Party Advisory |
| CVE-2019-11251: kubectl cp symlink vulnerability · Issue #87773 · kubernetes/kubernetes · GitHub |
CONFIRM |
github.com |
Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
Vendor Comments And Credit
Discovery Credit
LEGACY: Erik Sjölund
Legacy QID Mappings
- 770008 Red Hat OpenShift Container Platform 4.1 Security Update (RHSA-2019:3266)
- 982577 Go (go) Security Update for github.com/kubernetes/kubernetes/pkg/kubectl/cmd/cp (GHSA-6qfg-8799-r575)