CVE-2023-3676

HIGH8.8EPSS 40.7%

Kubernetes privilege escalation vulnerability

發布日:2023/10/31修改日:2026/2/4
也稱為:GHSA-7fxm-f474-hf8wCGA-33r6-gv35-447jGO-2023-2330

描述

A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH8.8CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

參考連結(18)