CVE-2018-1002105

unknown
Published 2022-02-15 · Modified 2026-02-04
CVSS v3
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2
VIR risk

Description

In all Kubernetes versions prior to v1.10.11, v1.11.5, and v1.12.3, incorrect handling of error responses to proxied upgrade requests in the kube-apiserver allowed specially crafted requests to establish a connection through the Kubernetes API server to backend servers, then send arbitrary requests over the same connection directly to the backend, authenticated with the Kubernetes API server's TLS credentials used to establish the backend connection.

Predictions

Exploit likelihood
30%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2018-1002105

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2018-1002105.html

OS impact

OSVersionStatusFixed in
suse slesaffected
debian debianbookwormfixed1.17.4-1
debian debianbullseyefixed1.17.4-1
debian debianforkyfixed1.17.4-1
debian debiansidfixed1.17.4-1
debian debiantrixiefixed1.17.4-1

Package impact

EcosystemPackageVulnerableFixed
golang Gogithub.com/kubernetes/kubernetes<1.10.111.10.11
golang Gogithub.com/kubernetes/kubernetes>=1.11.0,<1.11.51.11.5
golang Gogithub.com/kubernetes/kubernetes>=1.12.0,<1.12.31.12.3

References

Verify integrity in audit chain (admin only). AS-IS.