​
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-5hp6-8xch-g7p7

Published

Last updated

https://images.chainguard.dev/security/CGA-5hp6-8xch-g7p7
Package

calico

Latest Update
Fixed
Fixed Version

3.26.1-r5

Aliases
  • CVE-2023-2727
  • GHSA-qc2g-gmh6-95p4

Severity

6.5

Medium

CVSS V3

Summary

kube-apiserver vulnerable to policy bypass

Description

Users may be able to launch containers using images that are restricted by ImagePolicyWebhook when using ephemeral containers. Kubernetes clusters are only affected if the ImagePolicyWebhook admission plugin is used together with ephemeral containers.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images