Total vulnerabilities in the database
Kube-proxy on Windows can unintentionally forward traffic to local processes listening on the same port (“spec.ports[*].port”) as a LoadBalancer Service when the LoadBalancer controller does not set the “status.loadBalancer.ingress[].ip” field. Clusters where the LoadBalancer controller sets the “status.loadBalancer.ingress[].ip” field are unaffected.
Software | From | Fixed in |
---|---|---|
![]() |
- | 1.21 |
kubernetes / kubernetes | 1.18.0 | 1.18.18 |
kubernetes / kubernetes | 1.19.0 | 1.19.10 |
kubernetes / kubernetes | 1.20.0 | 1.20.6 |