​
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-26j4-f4w4-6f65

Published

Last updated

https://images.chainguard.dev/security/CGA-26j4-f4w4-6f65
Package

aws-ebs-csi-driver-1.18

Latest Update
Fixed
Fixed Version

1.18.0-r15

Aliases
  • CVE-2023-2727
  • GHSA-qc2g-gmh6-95p4

Severity

6.5

Medium

CVSS V3

Summary

kube-apiserver vulnerable to policy bypass

Description

Users may be able to launch containers using images that are restricted by ImagePolicyWebhook when using ephemeral containers. Kubernetes clusters are only affected if the ImagePolicyWebhook admission plugin is used together with ephemeral containers.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images