v1.18.6: CVE edition
Bregor
released this
17 Jul 16:11
·
16 commits
to features/kubernetes-1.18
since this release
Cookbook updates
- Kubernetes: 1.18.6
- etcd: 3.4.10
- Update etcd cookbook to 6.0.0 version
CVEs fixed in this release
- CVE-2020-8557: Node disk DOS by writing to container /etc/hostsAREA/KUBELET
- CVE-2020-8559: Privilege escalation from compromised node to clusterAREA/APISERVER