Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.8 Go

Kube-proxy may unintentionally forward traffic

GHSA-35c7-w35f-xwgh · CVE-2021-25736 · GO-2023-2159

Published · Modified

Description

Kube-proxy on Windows can unintentionally forward traffic to local processes listening on the same port (spec.ports[*].port) as a LoadBalancer Service when the LoadBalancer controller does not set the status.loadBalancer.ingress[].ip field. Clusters
where the LoadBalancer controller sets the status.loadBalancer.ingress[].ip field are unaffected.

Ready to move

Start Securing

Free, no credit card | First findings in minutes