CVE-2021-25737

2.7LOW

A security issue was discovered in Kubernetes where a user may be able to redirect pod traffic to private networks on a Node. Kubernetes already prevents creation of Endpoint IPs in the localhost or l

Published: 9/6/2021Updated: 11/21/2024

Description

A security issue was discovered in Kubernetes where a user may be able to redirect pod traffic to private networks on a Node. Kubernetes already prevents creation of Endpoint IPs in the localhost or link-local range, but the same validation was not performed on EndpointSlice IPs.

AI AnalysisPowered by AI

Affected Products

kuberneteskubernetes
kuberneteskubernetes
kuberneteskubernetes
kuberneteskubernetes
1.21.0

References