QID 375454
Date Published: 2021-04-14
QID 375454: Visual Studio Code Kubernetes Tools Remote Code Execution Vulnerability
Visual Studio Code is a lightweight but powerful source code editor which runs on your desktop and is available for Windows, macOS and Linux.
Affected Versions:
Kubernetes Tools for Visual Studio Code prior to version 1.3.0
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of Kubernetes Tools for Visual Studio Code.
A local attacker who successfully exploited the vulnerability could inject arbitrary code to run in the context of the current user.
Solution
Please refer to Microsoft advisory for Visual Studio Code for more details.
Vendor References
- CVE-2021-28448 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-28448
CVEs related to QID 375454
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-28448 | WIndows |
|