CVE-2017-1002102

Priority
Description
In Kubernetes versions 1.3.x, 1.4.x, 1.5.x, 1.6.x and prior to versions
1.7.14, 1.8.9 and 1.9.4 containers using a secret, configMap, projected or
downwardAPI volume can trigger deletion of arbitrary files/directories from
the nodes where they are running.
Notes
ratliffUbuntu's distribution of kubernetes was updated for this on March 12
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Ubuntu 18.04 LTS (Bionic Beaver):not-affected
More Information

Updated: 2020-09-10 06:39:04 UTC (commit 81a23a978c4436cd99e1d040e9e73e9146876281)