GPU VulnDB

Database/Container, Kubernetes & orchestration

KubeVirt: A compromised node's virt-handler service account can be abused cluster-wide

CVE-2023-26484Container, Kubernetes & orchestrationcurated

Impact

A compromised node's virt-handler service account can be abused cluster-wide

Who can reach it

An attacker who owns one node

What to do

Upgrade KubeVirt; scope down the virt-handler service account

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.