CVE Vulnerabilities

CVE-2021-25749

Published: May 24, 2023 | Modified: Jun 01, 2023
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.

Affected Software

Name Vendor Start Version End Version
Kubernetes Kubernetes 1.20.0 (including) 1.21.0 (including)
Kubernetes Kubernetes 1.22.0 (including) 1.22.14 (excluding)
Kubernetes Kubernetes 1.23.0 (including) 1.23.11 (excluding)
Kubernetes Kubernetes 1.24.0 (including) 1.24.5 (excluding)

References