Where
-Infinity
0
Severity
8.6
OS Command Injection
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Last updated 25 August 2025

1 / 3
Source: Ubuntu
First published (updated )
Severity
4.3
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Jenkins Google Kubernetes Engine Plugin 0.6.2 and earlier created a temporary file containing a temporary access token in the project workspace, where it could be accessed by users with Job/Read permission.

1 / 2
First published (updated )
EOL
Mar 30, 2024
Support Ends
Jan 31, 2024

End of life: 3/30/2024, End of support: 1/31/2024, Latest version: 1.25.16-gke.1759000

EOL
Mar 30, 2024
Support Ends
Jan 31, 2024

End of life: 3/30/2024, End of support: 1/31/2024, Latest version: 1.25.16-gke.1759000

First published (updated )
EOL
Jun 1, 2022
Support Ends
Oct 1, 2021

End of life: 6/1/2022, End of support: 10/1/2021, Latest version: 1.19.16-gke.15700

EOL
Jun 1, 2022
Support Ends
Oct 1, 2021

End of life: 6/1/2022, End of support: 10/1/2021, Latest version: 1.19.16-gke.15700

First published (updated )
EOL
Jun 30, 2024
Support Ends
Apr 30, 2024

End of life: 6/30/2024, End of support: 4/30/2024, Latest version: 1.26.15-gke.1469001

EOL
Jun 30, 2024
Support Ends
Apr 30, 2024

End of life: 6/30/2024, End of support: 4/30/2024, Latest version: 1.26.15-gke.1469001

First published (updated )
EOL
Feb 4, 2025
Support Ends
Dec 31, 2024

End of life: 2/4/2025, End of support: 12/31/2024, Latest version: 1.28.15-gke.3290000

First published (updated )
EOL
Feb 4, 2025
Support Ends
Dec 31, 2024

End of life: 2/4/2025, End of support: 12/31/2024, Latest version: 1.28.15-gke.3290000

EOL
Nov 1, 2021
Support Ends
Jul 1, 2021

End of life: 11/1/2021, End of support: 7/1/2021, Latest version: 1.17.17-gke.9100

EOL
Nov 1, 2021
Support Ends
Jul 1, 2021

End of life: 11/1/2021, End of support: 7/1/2021, Latest version: 1.17.17-gke.9100

First published (updated )
EOL
Oct 31, 2023
Support Ends
Aug 31, 2023

End of life: 10/31/2023, End of support: 8/31/2023, Latest version: 1.24.17-gke.2472000

EOL
Oct 31, 2023
Support Ends
Aug 31, 2023

End of life: 10/31/2023, End of support: 8/31/2023, Latest version: 1.24.17-gke.2472000

First published (updated )
EOL
Jan 31, 2023
Support Ends
Nov 1, 2022

End of life: 1/31/2023, End of support: 11/1/2022, Latest version: 1.21.14-gke.18800

EOL
Jan 31, 2023
Support Ends
Nov 1, 2022

End of life: 1/31/2023, End of support: 11/1/2022, Latest version: 1.21.14-gke.18800

First published (updated )
EOL
Apr 12, 2025
Support Ends
Feb 28, 2025

End of life: 4/12/2025, End of support: 2/28/2025, Latest version: 1.29.15-gke.2725000

EOL
Apr 12, 2025
Support Ends
Feb 28, 2025

End of life: 4/12/2025, End of support: 2/28/2025, Latest version: 1.29.15-gke.2725000

First published (updated )
EOL
Aug 1, 2022
Support Ends
Dec 1, 2021

End of life: 8/1/2022, End of support: 12/1/2021, Latest version: 1.20.15-gke.13700

First published (updated )
EOL
Aug 1, 2022
Support Ends
Dec 1, 2021

End of life: 8/1/2022, End of support: 12/1/2021, Latest version: 1.20.15-gke.13700

EOL
Mar 1, 2022
Support Ends
Aug 1, 2021

End of life: 3/1/2022, End of support: 8/1/2021, Latest version: 1.18.20-gke.6000

EOL
Mar 1, 2022
Support Ends
Aug 1, 2021

End of life: 3/1/2022, End of support: 8/1/2021, Latest version: 1.18.20-gke.6000

First published (updated )
EOL
Apr 30, 2023
Support Ends
Feb 28, 2023

End of life: 4/30/2023, End of support: 2/28/2023, Latest version: 1.22.17-gke.14100

First published (updated )
EOL
Apr 30, 2023
Support Ends
Feb 28, 2023

End of life: 4/30/2023, End of support: 2/28/2023, Latest version: 1.22.17-gke.14100

EOL
Jul 31, 2023
Support Ends
May 31, 2023

End of life: 7/31/2023, End of support: 5/31/2023, Latest version: 1.23.17-gke.10700

First published (updated )
EOL
Jul 31, 2023
Support Ends
May 31, 2023

End of life: 7/31/2023, End of support: 5/31/2023, Latest version: 1.23.17-gke.10700

EOL
Sep 30, 2025
Support Ends
Jul 31, 2025

End of life: 9/30/2025, End of support: 7/31/2025, Latest version: 1.30.14-gke.2866000

EOL
Sep 30, 2025
Support Ends
Jul 31, 2025

End of life: 9/30/2025, End of support: 7/31/2025, Latest version: 1.30.14-gke.2866000

First published (updated )
Use After Free, Null Pointer Dereference, Race Condition

It was discovered that the NTFS file system implementation in the Linux kernel did not properly validate MFT flags in certain situations. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could cause a denial of service (system crash). (CVE-2022-48425) Zi Fan Tan discovered that the binder IPC implementation in the Linux kernel contained a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-21255) It was discovered that a race condition existed in the f2fs file system in the Linux kernel, leading to a null pointer dereference vulnerability. An attacker could use this to construct a malicious f2fs image that, when mounted and operated on, could cause a denial of service (system crash). (CVE-2023-2898) It was discovered that the DVB Core driver in the Linux kernel did not properly handle locking events in certain situations. A local attacker could use this to cause a denial of service (kernel deadlock). (CVE-2023-31084) Yang Lan discovered that the GFS2 file system implementation in the Linux kernel could attempt to dereference a null pointer in some situations. An attacker could use this to construct a malicious GFS2 image that, when mounted and operated on, could cause a denial of service (system crash). (CVE-2023-3212) It was discovered that the KSMBD implementation in the Linux kernel did not properly validate buffer sizes in certain operations, leading to an out-of- bounds read vulnerability. A remote attacker could use this to cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-38426, CVE-2023-38428) It was discovered that the KSMBD implementation in the Linux kernel did not properly calculate the size of certain buffers. A remote attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-38429)

First published (updated )
Advisory
USN-6351-1
EOL
Jan 16, 2026
Support Ends
Nov 30, 2025

End of life: 1/16/2026, End of support: 11/30/2025, Latest version: 1.31.14-gke.2630000

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203