PT-2022-5430 · Unknown+3 · Kubernetes+2
Yuval Avrahami
·
Published
2022-11-10
·
Updated
2025-08-08
·
CVE-2022-3294
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Kubernetes (affected versions not specified)
Description
A bug in the Kubernetes API server allows bypassing validation of node proxying addresses. This could enable an attacker to send authenticated requests to the API server's private network, potentially granting access to secure endpoints in the control plane network. Kubernetes clusters are only affected if an untrusted user can modify Node objects and send proxy requests to them. The issue is related to the node proxying feature, which allows clients to access Kubelet endpoints, establish connections to Pods, and retrieve container logs.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Authentication Bypass Using an Alternate Path or Channel
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Kubernetes
Suse