Permission check due: Kubernetes fixes information leak in kube-controller-manager
Limited Time Offer! For Less Than the Cost of a Starbucks Coffee, Access All DevOpsSchool Videos on YouTube Unlimitedly. Master DevOps, SRE, DevSecOps Skills! Enroll Now Source:-devclass.com A medium severity Server Side Request Forgery vulnerability has been found in Kubernetes’ kube-controller-manager – fixes are now available, so get updating. The security issue, which has been assigned the CVE ID CVE-2020-8555, allows users with a permission to either create a pod with GlusterFS, Quobyte, StorageFS, or ScaleIO, or a StorageClass “to
Read more