CVE-2018-1002102
published 2019-12-05CVE-2018-1002102: Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server…
PriorityP413low2.6CVSS 3.1
AVNACHPRHUIRSCCLINAN
EPSS
0.62%
45.6th percentile
Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints to arbitrary hosts. Impacted API servers will follow the redirect as a GET request with client-certificate credentials for authenticating to the Kubelet.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | kubernetes | < kubernetes 1.17.4-1 (bookworm) | kubernetes 1.17.4-1 (bookworm) |
| fedoraproject | fedora | — | — |
| kubernetes | kubernetes | — | — |
| kubernetes | kubernetes | >= 0 < 1.17.4-1 | 1.17.4-1 |
| kubernetes | kubernetes | >= 0 < 1.17.4-1 | 1.17.4-1 |
| kubernetes | kubernetes | >= 0 < 1.17.4-1 | 1.17.4-1 |
| kubernetes | kubernetes | >= 0 < 1.17.4-1 | 1.17.4-1 |
| kubernetes | kubernetes | 1.10.0 – 1.13.13 | — |
| kubernetes | kubernetes | >= v1.14 < v1.14.0 | v1.14.0 |
CVSS provenance
nvdv3.12.6LOWCVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:L/I:N/A:N
nvdv2.02.1LOWAV:N/AC:H/Au:S/C:P/I:N/A:N
osv2.6LOW
vendor_debian2.6LOW
vendor_redhat2.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints
vendor_redhat·2019-12-03·CVSS 2.6
CVE-2018-1002102 [LOW] CWE-601 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints
kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints
Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints to arbitrary hosts. Impacted API servers will follow the redirect as a GET request with client-certificate credentials for authenticating to the Kubelet.
Statement: OpenShift Container Platform 4 is not affected by this flaw as it has included the upstream patch since version 4.1.0.
Package: openshift (Red Hat OpenShift Container Platform 4) - Not affected
Package: heketi (Red Hat Storage 3) - Not affected
Debian
CVE-2018-1002102: kubernetes - Improper validation of URL redirection in the Kubernetes API server in versions ...
vendor_debian·2018·CVSS 2.6
CVE-2018-1002102 [LOW] CVE-2018-1002102: kubernetes - Improper validation of URL redirection in the Kubernetes API server in versions ...
Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints to arbitrary hosts. Impacted API servers will follow the redirect as a GET request with client-certificate credentials for authenticating to the Kubelet.
Scope: local
bookworm: resolved (fixed in 1.17.4-1)
bullseye: resolved (fixed in 1.17.4-1)
forky: resolved (fixed in 1.17.4-1)
sid: resolved (fixed in 1.17.4-1)
trixie: resolved (fixed in 1.17.4-1)
OSV
CVE-2018-1002102: Improper validation of URL redirection in the Kubernetes API server in versions prior to v1
osv·2019-12-05·CVSS 2.6
CVE-2018-1002102 [LOW] CVE-2018-1002102: Improper validation of URL redirection in the Kubernetes API server in versions prior to v1
Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints to arbitrary hosts. Impacted API servers will follow the redirect as a GET request with client-certificate credentials for authenticating to the Kubelet.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-1002102 kubernetes:1.10/kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming en
bugzilla·2019-12-17·CVSS 2.6
CVE-2018-1002102 [LOW] CVE-2018-1002102 kubernetes:1.10/kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming en
CVE-2018-1002102 kubernetes:1.10/kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please
Bugzilla
CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints
bugzilla·2019-12-17·CVSS 2.6
CVE-2018-1002102 [LOW] CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints
CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints
Improper validation of URL redirection in the Kubernetes API server in versions prior to v1.14.0 allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints to arbitrary hosts. Impacted API servers will follow the redirect as a GET request with client-certificate credentials for authenticating to the Kubelet.
Reference:
https://github.com/kubernetes/kubernetes/issues/85867
Discussion:
Created kubernetes tracking bugs for this issue:
Affects: fedora-all [bug 1784603]
Created kubernetes:1.10/kubernetes tracking bugs for this issue:
Affects: fedora-all [bug 1784
Bugzilla
CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints [fedora-
bugzilla·2019-12-17·CVSS 2.6
CVE-2018-1002102 [LOW] CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints [fedora-
CVE-2018-1002102 kubernetes: improper validation of URL redirection in the Kubernetes API server allows an attacker-controlled Kubelet to redirect API server requests from streaming endpoints [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention th
Unit42
Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances
blogs_unit42·2021-09-09
Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances
## Executive Summary
Azure Container Instances (ACI) is Azure's Container-as-a-Service (CaaS) offering, enabling customers to run containers on Azure without managing the underlying servers. Unit 42 researchers recently identified and disclosed critical security issues in ACI to Microsoft. A malicious Azure user could have exploited these issues to execute code on other users' containers, steal customer secrets and images deployed to the platform, and possibly abuse ACI's infrastructure for cryptomining. Researchers named the vulnerability Azurescape – the first cross-account container takeover in the public cloud.
Azurescape allowed malicious users to compromise the multitenant Kubernetes clusters hosting ACI, establishing full control over other users' containers. This post covers the
Unit42
Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances
blogs_unit42·2021-09-09·CVSS 2.6
CVE-2018-1002102 [LOW] Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances
Threat Research Center
Threat Research
Cloud Cybersecurity Research
## Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances
Yuval Avrahami
Published: September 9, 2021
Cloud Cybersecurity Research
Threat Research
Vulnerabilities
Azure
Azurescape
Cloud Security
Containers
CVE-2018-1002102
CVE-2019-5736
Kubernetes
RunC
## Executive Summary
Azure Container Instances (ACI) is Azure's Container-as-a-Service (CaaS) offering, enabling customers to run containers on Azure without managing the underlying servers. Unit 42 researchers recently identified and disclosed critical security issues in ACI to Microsoft. A malicious Azure user could have exploited these issues to execute code on other users' containers, steal customer secrets and images dep
https://github.com/kubernetes/kubernetes/issues/85867https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q56CULSH7F7BC4NPS67ZS23ZCLL5TIVK/https://github.com/kubernetes/kubernetes/issues/85867https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q56CULSH7F7BC4NPS67ZS23ZCLL5TIVK/
2019-12-05
Published