Database/Container, Kubernetes & orchestration
Kubernetes: Command injection via pod spec on Windows nodes
CVE-2023-3676Container, Kubernetes & orchestrationcurated
Impact
Command injection via pod spec on Windows nodes; escalation to node admin
Who can reach it
Cluster user able to create pods on a Windows node
What to do
Rolling control-plane and kubelet upgrade; Windows node drain
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.