QID 377858

Date Published: 2023-02-06

QID 377858: Kubernetes kubelet Internet Protocol (IPv4) Clusters Susceptible Vulnerability

Kubernetes is an open-source container-orchestration system for automating deployment, scaling, and management of containerized applications.

Affected version:
kubelet v1.18.0-v1.18.3
kubelet v1.17.0-v1.17.6
kubelet prior to v1.16.11
QID Detection Logic:(Authenticated)
The QID uses 'kubelet --version' command to check for vulnerable versions of Kubernetes kubelet

Successful exploitation of the vulnerability may allow an attacker kubernetes cluster network

  • CVSS V3 rated as High - 6 severity.
  • CVSS V2 rated as High - 6 severity.
  • Solution
    For more information please visit 91507

    CVEs related to QID 377858

    Software Advisories
    Advisory ID Software Component Link
    91507 URL Logo github.com/kubernetes/kubernetes/issues/91507