Oval Definition:oval:org.opensuse.security:def:20208558
Revision Date:2022-05-22Version:1
Title:CVE-2020-8558
Description:

The Kubelet and kube-proxy components in versions 1.1.0-1.16.10, 1.17.0-1.17.6, and 1.18.0-1.18.3 were found to contain a security issue which allows adjacent hosts to reach TCP and UDP services bound to 127.0.0.1 running on the node or in the node's network namespace. Such a service is generally thought to be reachable only by other processes on the same host, but due to this defeect, could be reachable by other hosts on the same LAN as the node, or by containers running on the same node as the service.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2020-8558
SUSE CVE-2020-8558
Platform(s):SUSE CaaS Platform 4.0
Product(s):
Definition Synopsis
  • SUSE CaaS Platform 4.0 is installed
  • AND Package Information
  • kubernetes-client is affected
  • OR kubernetes-common is affected
  • OR kubernetes-kubeadm is affected
  • OR kubernetes-kubelet is affected
  • BACK