VYPR

Image Builder

by Kubernetes Sigs

Source repositories

CVEs (2)

  • CVE-2024-9486CriOct 15, 2024
    risk 0.57cvss 9.8epss 0.02

    A security issue was discovered in the Kubernetes Image Builder versions <= v0.1.37 where default credentials are enabled during the image build process. Virtual machine images built using the Proxmox provider do not disable these default credentials, and nodes using the…

  • CVE-2024-9594MedOct 15, 2024
    risk 0.34cvss 6.3epss 0.02

    A security issue was discovered in the Kubernetes Image Builder versions <= v0.1.37 where default credentials are enabled during the image build process when using the Nutanix, OVA, QEMU or raw providers. The credentials can be used to gain root access. The credentials are…