5.5
CVSSv3

CVE-2020-8564

Published: 07/12/2020 Updated: 29/03/2021
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

In Kubernetes clusters using a logging level of at least 4, processing a malformed docker config file will result in the contents of the docker config file being leaked, which can include pull secrets or other registry credentials. This affects < v1.19.3, < v1.18.10, < v1.17.13.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kubernetes kubernetes

Vendor Advisories

Debian Bug report logs - #972341 CVE-2020-8564 CVE-2020-8565 CVE-2020-8566 Package: src:kubernetes; Maintainer for src:kubernetes is Janos Lenart &lt;ocsi@debianorg&gt;; Reported by: Moritz Muehlenhoff &lt;jmm@debianorg&gt; Date: Fri, 16 Oct 2020 12:54:01 UTC Severity: important Tags: security Found in version kubernetes/118 ...
Debian Bug report logs - #972649 CVE-2020-8565 Package: src:kubernetes; Maintainer for src:kubernetes is Janos Lenart &lt;ocsi@debianorg&gt;; Reported by: Moritz Muehlenhoff &lt;jmm@debianorg&gt; Date: Fri, 16 Oct 2020 12:54:01 UTC Severity: important Tags: security Found in versions kubernetes/1186-1, kubernetes/1193-1 ...
Synopsis Moderate: OpenShift Container Platform 468 security and bug fix update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 468 is now available with updates to packages and images that fix several bugsThis release includes a security update for openshif ...
Synopsis Moderate: OpenShift Container Platform 4613 packages and security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4613 is now available with updates to packages and images that fix several bugsA security update for cri-o, openshift, openshift ...
Synopsis Moderate: OpenShift Container Platform 461 package security update Type/Severity Security Advisory: Moderate Topic An update for jenkins-2-plugins, openshift-clients, podman, runc, and skopeo is now available for Red Hat OpenShift Container Platform 46Red Hat Product Security has rated this upd ...
Synopsis Moderate: OpenShift Container Platform 4523 security and bug fix update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4523 is now available with updates to packages and images that fix several bugsThis release includes a security update for Kubern ...
Synopsis Moderate: OpenShift Container Platform 4613 bug fix and security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4613 is now available with updates to packages and images that fix several bugsThis release also includes a security update for R ...
Synopsis Important: OpenShift Container Platform 4433 bug fix and security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 4433 is now available withupdates to packages and images that fix several bugs and add enhancementsThis release also includes a ...
Synopsis Moderate: Red Hat Advanced Cluster Management 213 security and bug fix update Type/Severity Security Advisory: Moderate Topic Red Hat Advanced Cluster Management for Kubernetes 213 General Availabilityrelease images, which fix several bugs and security issues Red Hat Product Security has rated ...