漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Kubevirt: kubevirt: vmexport directory symlink escape enables exporter pod file read
Vulnerability Description
A flaw was found in KubeVirt's virt-exportserver component. An attacker with specific namespace-level access can exploit a path traversal vulnerability in the VMExport directory endpoint. By placing a symbolic link (symlink) within an exported filesystem Persistent Volume Claim (PVC) that points outside its designated mount root, the attacker can read arbitrary files from the exporter pod's filesystem. This leads to information disclosure, potentially exposing sensitive data.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Vulnerability Type
在文件访问前对链接解析不恰当(链接跟随)
Vulnerability Title
Kubevirt 后置链接漏洞
Vulnerability Description
Kubevirt是KubeVirt开源的一款虚拟机管理器。 KubeVirt存在后置链接漏洞,该漏洞源于VMExport目录端点中的路径遍历问题,可能导致具有特定命名空间级别访问权限的攻击者通过在被导出的文件系统持久卷声明中放置指向其指定挂载根目录之外的符号链接,读取导出器Pod文件系统中的任意文件,从而导致信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A