CVE-2015-7528

Kubernetes before 1.2.0-alpha.5 allows remote attackers to read arbitrary pod logs via a container name.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kubernetes:kubernetes:*:alpha.4:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:redhat:openshift:3.0:*:*:*:enterprise:*:*:*
cpe:2.3:a:redhat:openshift:3.1:*:*:*:enterprise:*:*:*

History

21 Nov 2024, 02:36

Type Values Removed Values Added
References () http://rhn.redhat.com/errata/RHSA-2015-2615.html - () http://rhn.redhat.com/errata/RHSA-2015-2615.html -
References () https://access.redhat.com/errata/RHSA-2015:2544 - () https://access.redhat.com/errata/RHSA-2015:2544 -
References () https://github.com/kubernetes/kubernetes/pull/17886 - () https://github.com/kubernetes/kubernetes/pull/17886 -
References () https://github.com/kubernetes/kubernetes/releases/tag/v1.2.0-alpha.5 - () https://github.com/kubernetes/kubernetes/releases/tag/v1.2.0-alpha.5 -
References () https://github.com/openshift/origin/pull/6113 - () https://github.com/openshift/origin/pull/6113 -

Information

Published : 2016-04-11 21:59

Updated : 2024-11-21 02:36


NVD link : CVE-2015-7528

Mitre link : CVE-2015-7528

CVE.ORG link : CVE-2015-7528


JSON object : View

Products Affected

redhat

  • openshift

kubernetes

  • kubernetes
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor