QID 995932
Date Published: 2023-11-16
QID 995932: GO (Go) Security Update for k8s.io/kubernetes (GHSA-hq6q-c2x6-hmch)
A security issue was discovered in Kubernetes where a user that can create pods and persistent volumes on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they are using an in-tree storage plugin for Windows nodes.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-hq6q-c2x6-hmch for updates and patch information.
Vendor References
- GHSA-hq6q-c2x6-hmch -
github.com/advisories/GHSA-hq6q-c2x6-hmch
CVEs related to QID 995932
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-hq6q-c2x6-hmch | k8s.io/kubernetes |
|