• caglararli@hotmail.com
  • 05386281520

CVE-2024-3177 | Kubernetes kube-apiserver up to 1.27.12/1.28.8/1.29.3 Mountable Secrets Policy envFrom information disclosure

Çağlar Arlı      -    8 Views

CVE-2024-3177 | Kubernetes kube-apiserver up to 1.27.12/1.28.8/1.29.3 Mountable Secrets Policy envFrom information disclosure

A vulnerability was found in Kubernetes kube-apiserver up to 1.27.12/1.28.8/1.29.3 and classified as problematic. Affected by this issue is some unknown functionality of the component Mountable Secrets Policy. The manipulation of the argument envFrom leads to information disclosure. This vulnerability is handled as CVE-2024-3177. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.