apk package
chainguard/kubernetes-pause-3.4
pkg:apk/chainguard/kubernetes-pause-3.4
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-39325 | — | < 1.20.15-r5 | 1.20.15-r5 | Oct 11, 2023 | A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption. While the total number of requests is bounded by the http2.Server.MaxConcurrentStreams setting, resetting an in-progress request allows the attack | ||
| CVE-2021-25749 | — | < 0 | 0 | May 24, 2023 | Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true. |
- CVE-2023-39325Oct 11, 2023affected < 1.20.15-r5fixed 1.20.15-r5
A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption. While the total number of requests is bounded by the http2.Server.MaxConcurrentStreams setting, resetting an in-progress request allows the attack
- CVE-2021-25749May 24, 2023affected < 0fixed 0
Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.