GHSA-35c7-w35f-xwghMediumCVSS 5.8

Kube-proxy may unintentionally forward traffic

Published
October 30, 2023
Last Modified
July 6, 2026

🔗 CVE IDs covered (1)

📋 Description

Kube-proxy on Windows can unintentionally forward traffic to local processes listening on the same port (spec.ports[*].port) as a LoadBalancer Service when the LoadBalancer controller does not set the status.loadBalancer.ingress[].ip field. Clusters where the LoadBalancer controller sets the status.loadBalancer.ingress[].ip field are unaffected.

🎯 Affected products1

  • go/k8s.io/kubernetes:< 1.21.0

🔗 References (6)