Oval Definition:oval:org.opensuse.security:def:202125741
Revision Date:2022-05-22Version:1
Title:CVE-2021-25741
Description:

A security issue was discovered in Kubernetes where a user may be able to create a container with subpath volume mounts to access files & directories outside of the volume, including on the host filesystem.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2021-25741
SUSE CVE-2021-25741
SUSE-CU-2021:318-1
SUSE-CU-2021:322-1
SUSE-CU-2021:325-1
SUSE-CU-2021:328-1
SUSE-CU-2021:330-1
SUSE-CU-2021:375-1
SUSE-CU-2021:385-1
SUSE-CU-2021:386-1
SUSE-CU-2021:387-1
SUSE-CU-2021:388-1
SUSE-SU-2021:3044-1
SUSE-SU-2021:3049-1
SUSE-SU-2021:3322-1
SUSE-SU-2021:3323-1
Platform(s):SUSE CaaS Platform 4.0
SUSE CaaS Platform 4.5
SUSE Linux Enterprise Server for SAP Applications 15 SP1
Product(s):
Definition Synopsis
  • SUSE CaaS Platform 4.0 is installed
  • AND Package Information
  • caasp-release-4.2.6-24.43.2 is installed
  • OR kubernetes-client-1.17.17-4.25.2 is installed
  • OR kubernetes-common-1.17.17-4.25.2 is installed
  • OR kubernetes-kubeadm-1.17.17-4.25.2 is installed
  • OR kubernetes-kubelet-1.17.17-4.25.2 is installed
  • OR release-notes-caasp-4.2.20210929-4.71.2 is installed
  • OR skuba-1.4.13-3.56.2 is installed
  • OR skuba-update-1.4.13-3.56.2 is installed
  • Definition Synopsis
  • SUSE CaaS Platform 4.5 is installed
  • AND Package Information
  • caasp-release-4.5.5-1.19.3 is installed
  • OR kubernetes-1.18-kubeadm-1.18.20-4.11.3 is installed
  • OR kubernetes-1.18-kubelet-1.18.20-4.11.3 is installed
  • OR release-notes-caasp-4.5.20210907-3.22.3 is installed
  • OR skuba-2.1.15-3.15.13.2 is installed
  • OR skuba-update-2.1.15-3.15.13.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
  • AND Package Information
  • kubernetes-client is affected
  • OR kubernetes-common is affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
  • AND
  • kubernetes-client is affected
  • OR kubernetes-common is affected
  • OR Package Information
  • SUSE CaaS Platform 4.0 is installed
  • AND
  • caasp-release-4.2.6-24.43.2 is installed
  • OR kubernetes-client-1.17.17-4.25.2 is installed
  • OR kubernetes-common-1.17.17-4.25.2 is installed
  • OR kubernetes-kubeadm-1.17.17-4.25.2 is installed
  • OR kubernetes-kubelet-1.17.17-4.25.2 is installed
  • OR release-notes-caasp-4.2.20210929-4.71.2 is installed
  • OR skuba-1.4.13-3.56.2 is installed
  • OR skuba-update-1.4.13-3.56.2 is installed
  • BACK