Cilium

Cilium

36 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 18.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:56:22

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. When run in debug mode, Cilium will log the contents of the `cilium-secrets` namespace. This could include data such as TLS private keys for Ingress and Gatewa...

  • EPSS 0.73%
  • Veröffentlicht 17.03.2023 22:15:11
  • Zuletzt bearbeitet 21.11.2024 07:53:13

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. In version 1.13.0, when Cilium is started, there is a short period when Cilium eBPF programs are not attached to the host. During this period, the host does no...

  • EPSS 0.55%
  • Veröffentlicht 17.03.2023 20:15:13
  • Zuletzt bearbeitet 21.11.2024 07:53:13

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.11.15, 1.12.8, and 1.13.1, under specific conditions, Cilium may misattribute the source IP address of traffic to a cluster, identifying ex...

  • EPSS 0.22%
  • Veröffentlicht 17.03.2023 20:15:13
  • Zuletzt bearbeitet 21.11.2024 07:53:13

Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.11.15, 1.12.8, and 1.13.1, an attacker with access to a Cilium agent pod can write to `/opt/cni/bin` due to a `hostPath` mount of that dire...

  • EPSS 0.28%
  • Veröffentlicht 20.05.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:58:38

Cilium is open source software for providing and securing network connectivity and loadbalancing between application workloads. Cilium prior to versions 1.9.16, 1.10.11, and 1.11.15 contains an incorrect default permissions vulnerability. Operating S...

  • EPSS 0.36%
  • Veröffentlicht 20.05.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:58:39

Cilium is open source software for providing and securing network connectivity and loadbalancing between application workloads. Prior to versions 1.9.16, 1.10.11, and 1.11.15, if an attacker is able to perform a container escape of a container runnin...