CVE-2021-25743

LOW3.0EPSS 0.28%

kubectl ANSI escape characters not filtered

發布日:2022/1/8修改日:2026/2/4
也稱為:GHSA-f9jg-8p32-2f55CGA-g2xf-r675-cc5vGO-2022-0983

描述

kubectl (k8s.io/kubernetes/pkg/kubectl) does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1LOW3.0CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:N

參考連結(8)