漏洞信息详情
Google Kubernetes 后置链接漏洞
漏洞简介
Google Kubernetes是美国谷歌(Google)公司的一套开源的Docker容器集群管理系统。该系统为容器化的应用提供资源调度、部署运行、服务发现和扩容缩容等功能。
Google Kubernetes中存在安全漏洞。攻击者可利用该漏洞编写任意文件。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,详情请关注厂商主页:
https://github.com/kubernetes/kubernetes
参考网址
来源:groups.google.com
链接:https://groups.google.com/d/msg/kubernetes-announce/YYtEFdFimZ4/nZnOezZuBgAJ
来源:github.com
链接:https://github.com/kubernetes/kubernetes/issues/87773
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:3905
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:3811
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:3265
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:3266
来源:access.redhat.com
链接:https://access.redhat.com/errata/RHSA-2019:3267
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1164448
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1165882
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1164388
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1164496
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1165828
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1165804
来源:access.redhat.com
链接:https://access.redhat.com/security/cve/cve-2019-11251
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Kubernetes-directory-traversal-via-Kubectl-Symlinks-30362
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4368/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4031/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2020.0010/
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1168570
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2019.4198/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155040/Red-Hat-Security-Advisory-2019-3267-01.html
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155202/Red-Hat-Security-Advisory-2019-3811-01.html
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1143454
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/155394/Red-Hat-Security-Advisory-2019-3905-01.html
来源:www.ibm.com
链接:https://www.ibm.com/support/pages/node/1164520
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-ibm-api-connect-is-impacted-by-a-vulnerability-in-kubernetescve-2019-11251/
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-multiple-vulnerabilities-in-kubernetes-affect-ibm-infosphere-information-server/
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2019-11251
受影响实体
暂无
补丁
- Google Kubernetes 安全漏洞的修复措施<!--2019-9-18-->
还没有评论,来说两句吧...