Article 45BR6 [$] Handling the Kubernetes symbolic link vulnerability

[$] Handling the Kubernetes symbolic link vulnerability

by
jake
from LWN.net on (#45BR6)

A year-old bug in Kubernetes was thetopic of a talk given by Michelle Au and Jan Aafrinek at KubeCon+ CloudNativeCon North America, which was held mid-December inSeattle. In the talk, they looked at the details of the bug and theresponse from the Kubernetes product security team (PST). While the bug was fairly straightforward, it wassurprisingly hard to fix. The whole process also provided experience thatwill help improve vulnerability handling in the future.

External Content
Source RSS or Atom Feed
Feed Location http://lwn.net/headlines/rss
Feed Title LWN.net
Feed Link https://lwn.net/
Reply 0 comments