In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects <= v1.19.3, <= v1.18.10, <= v1.17.13, < v1.20.0-alpha2.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: kubernetes
Published: 2020-12-07T22:00:19.374983Z
Updated: 2024-09-17T00:05:58.669Z
Reserved: 2020-02-03T00:00:00
Link: CVE-2020-8565
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-12-07T22:15:21.400
Modified: 2020-12-08T19:51:09.167
Link: CVE-2020-8565
Redhat