Vulnerability Report: GO-2022-0802

Kubernetes kubectl cp Vulnerable to Symlink Attack in k8s.io/kubernetes

For detailed information about this vulnerability, visit https://github.com/advisories/GHSA-6qfg-8799-r575 or https://nvd.nist.gov/vuln/detail/CVE-2019-11251.

Affected Modules

  • Path
    Go Versions
  • from v1.13.10 before v1.13.11, from v1.14.6 before v1.14.7, from v1.15.3 before v1.16.0

Aliases

References

Feedback

This report is unreviewed. It was automatically generated from a third-party source and its details have not been verified by the Go team.
See anything missing or incorrect? Suggest an edit to this report.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL