Skip to content

CVE-2024-3177: Bypassing mountable secrets policy imposed by the ServiceAccount admission plugin #194

@pacoxu

Description

@pacoxu

Affected Versions
kube-apiserver v1.29.0 - v1.29.3
kube-apiserver v1.28.0 - v1.28.8
kube-apiserver <= v1.27.12

kubernetes/kubernetes#124322

Metadata

Metadata

Assignees

No one assigned

    Labels

    1.26priority/mediumMedium(4.0≤Score<7.0) CVSS Score CVE

    Type

    No type

    Projects

    No projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions