Database/Container, Kubernetes & orchestration
Cilium: Debug mode logs the contents of the cilium-secrets namespace, including TLS private keys
CVE-2023-29002Container, Kubernetes & orchestrationcurated
Impact
Debug mode logs the contents of the cilium-secrets namespace, including TLS private keys
Who can reach it
Anyone with log-pipeline read access
What to do
Disable agent debug mode; rotate the TLS keys in cilium-secrets; scrub logs
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.