ALT-PU-2025-4535-3
Package kubernetes1.31 updated to version 1.31.6-alt1 for branch p11 in task 378611.
Closed vulnerabilities
Published: 2025-01-16
BDU:2025-00672
Уязвимость утилиты kubelet программного средства управления кластерами виртуальных машин Kubernetes для операционных систем Windows, позволяющая нарушителю выполнить произвольные команды
Severity: MEDIUM (5.9)
Vector: AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:N
References:
Published: 2025-03-13
CVE-2024-9042
This CVE affects only Windows worker nodes. Your worker node is vulnerable to this issue if it is running one of the affected versions listed below.
References:
Published: 2025-02-13
Modified: 2025-02-13
Modified: 2025-02-13
CVE-2025-0426
A security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node's disk.
References: