Description
Kyverno is a policy engine designed for Kubernetes. Kyverno seccomp control can be circumvented. Users of the podSecurity `validate.podSecurity` subrule in Kyverno 1.9.2 and 1.9.3 are vulnerable. This issue was patched in version 1.9.4.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1454 | Kyverno is a policy engine designed for Kubernetes. Kyverno seccomp control can be circumvented. Users of the podSecurity `validate.podSecurity` subrule in Kyverno 1.9.2 and 1.9.3 are vulnerable. This issue was patched in version 1.9.4. |
Github GHSA |
GHSA-33hq-f2mf-jm3c | kyverno seccomp control can be circumvented |
References
History
Fri, 10 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-10T19:00:31.962Z
Reserved: 2023-05-17T22:25:50.699Z
Link: CVE-2023-33191
Updated: 2024-08-02T15:39:35.695Z
Status : Modified
Published: 2023-05-30T07:15:09.997
Modified: 2024-11-21T08:05:05.360
Link: CVE-2023-33191
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA