Google Cloud Resolves Privilege Escalation Flaw Impacting Kubernetes Service
ID: 3f1a5428-3c0f-549d-8638-c354b586ebaa
STIX ID: report--3f1a5428-3c0f-549d-8638-c354b586ebaa
Feed Name: The Hacker News
Google Cloud patched a medium-severity privilege-escalation vulnerability affecting Google Kubernetes Engine (GKE) and Anthos Service Mesh (ASM) in which a threat actor who had already compromised a Fluent Bit logging container could access service account tokens on the node and leverage ASM's permissions to create cluster-admin pods, enabling data theft, deployment of malicious pods, or disruption; Palo Alto Networks Unit 42 reported the issue, there is no evidence of active exploitation, and Google released fixes and reworked Fluent Bit/ASM permissions in specific GKE and ASM versions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
