Kubernetes Authentication Bypass (CVE-2019-11248)

Related Vulnerabilities: CVE-2019-11248  

Check Point Reference: CPAI-2019-3142 Date Published: 21 Jan 2024 Severity: High Last Updated: Sunday 21 January, 2024 Source: Industry Reference:CVE-2019-11248
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Kubernetes prior to 1.12.10
Kubernetes 1.13.0
Kubernetes 1.13.0 Alpha 0
Kubernetes 1.13.0 Alpha 1
Kubernetes 1.13.0 Alpha 2
Kubernetes 1.13.0 Alpha 3
Kubernetes 1.13.0 Beta 0
Kubernetes 1.13.0 Beta 1
Kubernetes 1.13.0 Beta 2
Kubernetes 1.13.0 Release Candidate 1
Kubernetes 1.13.0 Release Candidate 2
Kubernetes 1.13.1
Kubernetes 1.13.1 Beta 0
Kubernetes 1.13.2
Kubernetes 1.13.2 Beta 0
Kubernetes 1.13.3
Kubernetes 1.13.3 Beta 0
Kubernetes 1.13.4
Kubernetes 1.13.4 Beta 0
Kubernetes 1.13.5
Kubernetes 1.13.5 Beta 0
Kubernetes 1.13.6
Kubernetes 1.13.6 Beta 0
Kubernetes 1.13.7
Kubernetes 1.13.7
Kubernetes 1.13.8
Kubernetes 1.14.0
Kubernetes 1.14.0 Alpha 0
Kubernetes 1.14.0 Alpha 1
Kubernetes 1.14.0 Alpha 2
Kubernetes 1.14.0 Alpha 3
Kubernetes 1.14.0 Beta 0
Kubernetes 1.14.0 Beta 1
Kubernetes 1.14.0 Beta 2
Kubernetes 1.14.0 Release Candidate 1
Kubernetes 1.14.1
Kubernetes 1.14.1 Beta 0
Kubernetes 1.14.2
Kubernetes 1.14.2 Beta 0
Kubernetes 1.14.3
Kubernetes 1.14.3 Beta 0
Kubernetes 1.14.4
Kubernetes 1.15.0 Alpha 0
Kubernetes 1.15.0 Alpha 1
Kubernetes 1.15.0 Alpha 2
Kubernetes 1.15.0 Alpha 3
Kubernetes 1.15.0 Beta 0
Kubernetes 1.15.0 Beta 1
Kubernetes 1.15.0 Beta 2
Kubernetes 1.15.0 Release Candidate 1 Vulnerability Description An authentication bypass vulnerability exists in Kubernetes. Successful exploitation of this vulnerability would allow remote attackers to gain unauthorized access into the affected system.