Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | cri-o: fix CVE-2023-6476kirkstone | Archana Polampalli | 4 days | 1 | -0/+61 |
A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may allow a pod to specify and get any amount of memory/cpu, circumventing the kubernetes scheduler and potentially resulting in a denial of service in the node. Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com> Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com> |