As cited
Copy frozen at (site build).
vulnerabilities
Unpatchable Vulnerabilities of Kubernetes: CVE-2021-25740
Kubernetes CVE-2021-25740 enables users with EndpointSlice access to redirect traffic through shared ingress and load balancer services. The vulnerability permits lateral movement and traffic interception within a cluster by exploiting insufficient access controls on endpoint objects.
Why it matters: Kubernetes operators and platform teams must audit EndpointSlice role-based access control (RBAC) permissions to prevent unprivileged cluster users from hijacking traffic destined for shared services.
- Source published
- First seen by Cybersecurity Tracker