Bugzilla – Bug 1222539
VUL-0: CVE-2024-3177: kubernetes1.18: Bypassing mountable secrets policy imposed by the ServiceAccount admission plugin
Last modified: 2024-05-17 12:01:15 UTC
is public
SUSE-SU-2024:1404-1: An update that solves one vulnerability can now be installed. Category: security (low) Bug References: 1222539 CVE References: CVE-2024-3177 Maintenance Incident: [SUSE:Maintenance:33337](https://smelt.suse.de/incident/33337/) Sources used: openSUSE Leap 15.5 (src): kubernetes1.23-1.23.17-150500.3.12.1 Containers Module 15-SP5 (src): kubernetes1.23-1.23.17-150500.3.12.1 NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
SUSE-SU-2024:1403-1: An update that solves one vulnerability can now be installed. Category: security (low) Bug References: 1222539 CVE References: CVE-2024-3177 Maintenance Incident: [SUSE:Maintenance:33338](https://smelt.suse.de/incident/33338/) Sources used: openSUSE Leap 15.5 (src): kubernetes1.24-1.24.17-150500.3.16.1 Containers Module 15-SP5 (src): kubernetes1.24-1.24.17-150500.3.16.1 NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.