logo

Google Cloud Resolves Privilege Escalation Flaw Impacting Kubernetes Service

ID: 3f1a5428-3c0f-549d-8638-c354b586ebaa

STIX ID: report--3f1a5428-3c0f-549d-8638-c354b586ebaa

Feed Name: The Hacker News

Threat Score
55/100

Date Published: 2023-12-28

Date Updated: 2026-04-23

Author: [email protected] (The Hacker News)

...
...

Google Cloud patched a medium-severity privilege-escalation vulnerability affecting Google Kubernetes Engine (GKE) and Anthos Service Mesh (ASM) in which a threat actor who had already compromised a Fluent Bit logging container could access service account tokens on the node and leverage ASM's permissions to create cluster-admin pods, enabling data theft, deployment of malicious pods, or disruption; Palo Alto Networks Unit 42 reported the issue, there is no evidence of active exploitation, and Google released fixes and reworked Fluent Bit/ASM permissions in specific GKE and ASM versions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.