CVE-2022-29179
HIGH7.5EPSS 0.17%Improper Privilege Management in Cilium in github.com/cilium/cilium
發布日:2022/5/24修改日:2026/2/4
描述
Improper Privilege Management in Cilium in github.com/cilium/cilium
受影響套件(9)
- Bitnami/ciliumfrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Bitnami/cilium-operatorfrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Bitnami/cilium-proxyfrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Bitnami/hubblefrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Bitnami/hubble-relayfrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Bitnami/hubble-uifrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Bitnami/hubble-ui-backendfrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Go/github.com/cilium/ciliumfrom 0, < 1.9.16, >= 1.10.0, < 1.10.11, >= 1.11.0, < 1.11.5
- Go/github.com/cilium/cilium>= 1.11.0, < 1.11.5
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH7.5 | CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H |
參考連結(6)
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2022-29179
- PATCHgithub.com/cilium/cilium
- WEBhttps://github.com/cilium/cilium/releases/tag/v1.10.11
- WEBhttps://github.com/cilium/cilium/releases/tag/v1.11.5
- WEBhttps://github.com/cilium/cilium/releases/tag/v1.9.16
- WEBhttps://github.com/cilium/cilium/security/advisories/GHSA-fmrf-gvjp-5j5g