11/7/2022
3/8/2024
CVE-2022-31074: KubeEdge Cloud AdmissionController component DoS
First published: Mon Jul 11 2022(Updated: )
KubeEdge is an open source system for extending native containerized application orchestration capabilities to hosts at Edge. Prior to versions 1.11.1, 1.10.2, and 1.9.4, several endpoints in the Cloud AdmissionController may be susceptible to a DoS attack if an HTTP request containing a very large Body is sent to it. The consequence of the exhaustion is that the Cloud AdmissionController will be in denial of service. This bug has been fixed in Kubeedge 1.11.1, 1.10.2, and 1.9.4. There is currently no known workaround.
Credit: security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|
Linuxfoundation Kubeedge | <1.9.4 | |
Linuxfoundation Kubeedge | >=1.10.0<1.10.2 | |
Linuxfoundation Kubeedge | >=1.11.0<1.11.1 | |
Never miss a vulnerability like this again
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
- collector/nvd-index
- agent/type
- agent/softwarecombine
- collector/mitre-cve
- source/MITRE
- agent/severity
- agent/last-modified-date
- agent/weakness
- agent/references
- agent/author
- agent/title
- agent/first-publish-date
- agent/tags
- agent/description
- agent/event
- vendor/linuxfoundation
- canonical/linuxfoundation kubeedge
- version/linuxfoundation kubeedge/1.10.0
- version/linuxfoundation kubeedge/1.11.0
Contact
SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.coBy using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203