CVE-2020-8566
07.12.2020, 22:15
In Kubernetes clusters using Ceph RBD as a storage provisioner, with logging level of at least 4, Ceph RBD admin secrets can be written to logs. This occurs in kube-controller-manager's logs during provisioning of Ceph RBD persistent claims. This affects < v1.19.3, < v1.18.10, < v1.17.13.Enginsight
| Vendor | Product | Version |
|---|---|---|
| kubernetes | kubernetes | 1.17.0 ≤ 𝑥 < 1.17.13 |
| kubernetes | kubernetes | 1.18.0 ≤ 𝑥 < 1.18.10 |
| kubernetes | kubernetes | 1.19.0 ≤ 𝑥 < 1.19.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References