Featured

Published on June 5th, 2020 📆 | 2210 Views ⚑

0

Mitigating CVE-2020-10749 in Kubernetes Environments


iSpeech

A vulnerability that might enable a man-in-the-middle attack on Kubernetes clusters, CVE-2020-10749, was disclosed a few days ago. This vulnerability is not in Kubernetes itself but rather in certain container networking implementations – IPv4-only clusters using affected implementations are vulnerable.
The vulnerability allows for man-in-the-middle (MITM) attacks, where an attacker can intercept network traffic to a pod in a Kubernetes cluster and impersonate it to clients.
How It Works To understand this vulnerability, here’s some relevant background:

*** This is a Security Bloggers Network syndicated blog from The Container Security Blog on StackRox authored by The Container Security Blog on StackRox. Read the original post at: https://www.stackrox.com/post/2020/06/mitigating-kubernetes-cve-2020-10749/





Source link

Tagged with:



Comments are closed.