CVE-2024-5321
unknown
CVSS v3
—
CVSS v2
—
VIR risk
—
Description
A security issue was discovered in Kubernetes clusters with Windows nodes where BUILTIN\Users may be able to read container logs and NT AUTHORITY\Authenticated Users may be able to modify container logs.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2024-5321
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| debian | bookworm | fixed | 0 |
| debian | bullseye | fixed | 0 |
| debian | forky | fixed | 0 |
| debian | sid | fixed | 0 |
| debian | trixie | fixed | 0 |
Package impact
| Ecosystem | Package | Vulnerable | Fixed |
|---|---|---|---|
| Go | k8s.io/kubernetes | <1.27.16 | 1.27.16 |
| Go | k8s.io/kubernetes | >=1.28.0,<1.28.12 | 1.28.12 |
| Go | k8s.io/kubernetes | >=1.29.0,<1.29.7 | 1.29.7 |
| Go | k8s.io/kubernetes | >=1.30.0,<1.30.3 | 1.30.3 |
References
- https://nvd.nist.gov/vuln/detail/CVE-2024-5321
- https://github.com/kubernetes/kubernetes/issues/126161
- https://github.com/kubernetes/kubernetes/commit/23660a78ae462a6c8c75ac7ffd9af97550dda1aa
- https://github.com/kubernetes/kubernetes/commit/84beb2915fa28ae477fe0676be8ba94ccd2b811a
- https://github.com/kubernetes/kubernetes/commit/90589b8f63d28bcd3db89749950ebc48ed07c190
- https://github.com/kubernetes/kubernetes/commit/de2033033b1d202ecaaa79d41861a075df8b49c1
- https://github.com/kubernetes/kubernetes
- https://groups.google.com/g/kubernetes-security-announce/c/81c0BHkKNt0
- https://github.com/advisories/GHSA-82m2-cv7p-4m75
- https://security-tracker.debian.org/tracker/CVE-2024-5321
Verify integrity in audit chain (admin only). AS-IS.