Unknown · Kubernetes · CVE-2023-2727
**Name of the Vulnerable Software and Affected Versions**
Kubernetes (affected versions not specified)
**Description**
The issue is related to the possibility of bypassing the ImagePolicyWebhook admission plugin's policies when using ephemeral containers in Kubernetes clusters. This could allow a remote attacker to circumvent existing security restrictions when launching containers. The vulnerability is associated with the use of the ImagePolicyWebhook admission plugin together with ephemeral containers.
**Recommendations**
As a temporary workaround, consider disabling the use of ephemeral containers with the ImagePolicyWebhook admission plugin until a patch is available.
Restrict access to the ImagePolicyWebhook admission plugin to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.