Talos worker join token can be used to get elevated access level to the Talos API
### Impact
Talos worker nodes use a join token to get accepted into the Talos cluster. A misconfigured Kubernetes environment may allow workloads to access the join token of the worker node. A malicio ...
Continue Reading
September 16, 2022
Talos worker join token can be used to get elevated access level to the Talos API
### Impact
Talos worker nodes use a join token to get accepted into the Talos cluster. A misconfigured Kubernetes environment may allow workloads to access the join token of the worker node. A malicio ...
Continue Reading
September 16, 2022
php:7.4 security update
php-pear
[1:1.10.13-1]
- update PEAR to 1.10.13
- update Archive_Tar to 1.4.14Read More ...
Continue Reading
September 16, 2022
php:7.4 security update
php-pear
[1:1.10.13-1]
- update PEAR to 1.10.13
- update Archive_Tar to 1.4.14Read More ...
Continue Reading
September 16, 2022
Security Bulletin: Red Hat OpenShift on IBM Cloud is affected by a CRI-O security vulnerability (CVE-2022-1708)
## Summary
Red Hat OpenShift on IBM Cloud is affected by a security vulnerability in CRI-O that causes memory or disk space exhaustion on the node for anyone with access to the Kubernetes API.
## Vu ...
Continue Reading
September 16, 2022
Denial Of Services (DoS)
graphql-java is vulnerable to denial-of-service. The vulnerability exists because of the missing sanitizations in the `parseDocumentImpl` function in `Parser.java` which allows a remote attacker to ca ...
Continue Reading
September 15, 2022
(RHSA-2022:6541) Moderate: php:7.4 security update
PHP is an HTML-embedded scripting language commonly used with the Apache HTTP Server.
Security Fix(es):
* Archive_Tar: allows an unserialization attack because phar: is blocked but PHAR: is not blocke ...
Continue Reading
September 15, 2022