Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2018-1002100

Description

In Kubernetes versions 1.5.x, 1.6.x, 1.7.x, 1.8.x, and prior to version 1.9.6, the kubectl cp command insecurely handles tar data returned from the container, and can be caused to overwrite arbitrary local files.

POC

Reference

- https://github.com/kubernetes/kubernetes/issues/61297

- https://hansmi.ch/articles/2018-04-openshift-s2i-security

Github

- https://github.com/43622283/awesome-cloud-native-security

- https://github.com/LouisLiuNova/container-escape-exploits

- https://github.com/Metarget/awesome-cloud-native-security

- https://github.com/Metarget/metarget

- https://github.com/atesemre/awesome-cloud-native-security

- https://github.com/hacking-kubernetes/hacking-kubernetes.info

- https://github.com/iridium-soda/container-escape-exploits

- https://github.com/noirfate/k8s_debug

- https://github.com/pu1et/doky