Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

HTTP:KUBERNETS-CVE-2018-1002105

Severity

Critical

Recommended

Yes

Recommended Action

Drop

Category

HTTP

Keywords

Kubernets apiserver CVE-2018-1002105 Remote Privilege Escalation

Release Date

2018/12/11

Update Number

3124

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

HTTP: Kubernets apiserver CVE-2018-1002105 Remote Privilege Escalation


This signature detects attempts to exploit a known vulnerability against kubernetes. A successful attack can lead to privilege escalation and unauthorised access.

Extended Description

In all Kubernetes versions prior to v1.10.11, v1.11.5, and v1.12.3, incorrect handling of error responses to proxied upgrade requests in the kube-apiserver allowed specially crafted requests to establish a connection through the Kubernetes API server to backend servers, then send arbitrary requests over the same connection directly to the backend, authenticated with the Kubernetes API server's TLS credentials used to establish the backend connection.

Affected Products

  • Kubernetes kubernetes 1.0.0
  • Kubernetes kubernetes 1.0.1
  • Kubernetes kubernetes 1.0.2
  • Kubernetes kubernetes 1.0.3
  • Kubernetes kubernetes 1.0.4
  • Kubernetes kubernetes 1.0.5
  • Kubernetes kubernetes 1.0.6
  • Kubernetes kubernetes 1.0.7
  • Kubernetes kubernetes 1.0.8
  • Kubernetes kubernetes 1.1.0
  • Kubernetes kubernetes 1.10.0
  • Kubernetes kubernetes 1.10.1
  • Kubernetes kubernetes 1.10.10
  • Kubernetes kubernetes 1.10.2
  • Kubernetes kubernetes 1.10.3
  • Kubernetes kubernetes 1.10.4
  • Kubernetes kubernetes 1.10.5
  • Kubernetes kubernetes 1.10.6
  • Kubernetes kubernetes 1.10.7
  • Kubernetes kubernetes 1.10.8
  • Kubernetes kubernetes 1.10.9
  • Kubernetes kubernetes 1.1.1
  • Kubernetes kubernetes 1.11.0
  • Kubernetes kubernetes 1.11.1
  • Kubernetes kubernetes 1.1-1.12
  • Kubernetes kubernetes 1.11.2
  • Kubernetes kubernetes 1.11.3
  • Kubernetes kubernetes 1.11.4
  • Kubernetes kubernetes 1.1.2
  • Kubernetes kubernetes 1.12.0
  • Kubernetes kubernetes 1.12.1
  • Kubernetes kubernetes 1.12.2
  • Kubernetes kubernetes 1.1.3
  • Kubernetes kubernetes 1.1.4
  • Kubernetes kubernetes 1.1.5
  • Kubernetes kubernetes 1.1.6
  • Kubernetes kubernetes 1.1.7
  • Kubernetes kubernetes 1.1.8
  • Kubernetes kubernetes 1.1.9
  • Kubernetes kubernetes 1.2.0
  • Kubernetes kubernetes 1.2.1
  • Kubernetes kubernetes 1.2.2
  • Kubernetes kubernetes 1.2.3
  • Kubernetes kubernetes 1.2.4
  • Kubernetes kubernetes 1.2.5
  • Kubernetes kubernetes 1.2.6
  • Kubernetes kubernetes 1.2.7
  • Kubernetes kubernetes 1.2.8
  • Kubernetes kubernetes 1.3.0
  • Kubernetes kubernetes 1.3.1
  • Kubernetes kubernetes 1.3.10
  • Kubernetes kubernetes 1.3.11
  • Kubernetes kubernetes 1.3.2
  • Kubernetes kubernetes 1.3.3
  • Kubernetes kubernetes 1.3.4
  • Kubernetes kubernetes 1.3.5
  • Kubernetes kubernetes 1.3.6
  • Kubernetes kubernetes 1.3.7
  • Kubernetes kubernetes 1.3.8
  • Kubernetes kubernetes 1.3.9
  • Kubernetes kubernetes 1.4.0
  • Kubernetes kubernetes 1.4.1
  • Kubernetes kubernetes 1.4.11
  • Kubernetes kubernetes 1.4.12
  • Kubernetes kubernetes 1.4.2
  • Kubernetes kubernetes 1.4.3
  • Kubernetes kubernetes 1.4.4
  • Kubernetes kubernetes 1.4.5
  • Kubernetes kubernetes 1.4.6
  • Kubernetes kubernetes 1.4.7
  • Kubernetes kubernetes 1.4.8
  • Kubernetes kubernetes 1.4.9
  • Kubernetes kubernetes 1.5.0
  • Kubernetes kubernetes 1.5.1
  • Kubernetes kubernetes 1.5.2
  • Kubernetes kubernetes 1.5.3
  • Kubernetes kubernetes 1.5.4
  • Kubernetes kubernetes 1.5.5
  • Kubernetes kubernetes 1.5.6
  • Kubernetes kubernetes 1.5.7
  • Kubernetes kubernetes 1.5.8
  • Kubernetes kubernetes 1.5.9
  • Kubernetes kubernetes 1.6.0
  • Kubernetes kubernetes 1.6.1
  • Kubernetes kubernetes 1.6.10
  • Kubernetes kubernetes 1.6.11
  • Kubernetes kubernetes 1.6.12
  • Kubernetes kubernetes 1.6.13
  • Kubernetes kubernetes 1.6.14
  • Kubernetes kubernetes 1.6.2
  • Kubernetes kubernetes 1.6.3
  • Kubernetes kubernetes 1.6.4
  • Kubernetes kubernetes 1.6.5
  • Kubernetes kubernetes 1.6.6
  • Kubernetes kubernetes 1.6.7
  • Kubernetes kubernetes 1.6.8
  • Kubernetes kubernetes 1.6.9
  • Kubernetes kubernetes 1.7.0
  • Kubernetes kubernetes 1.7.1
  • Kubernetes kubernetes 1.7.10
  • Kubernetes kubernetes 1.7.11
  • Kubernetes kubernetes 1.7.12
  • Kubernetes kubernetes 1.7.13
  • Kubernetes kubernetes 1.7.14
  • Kubernetes kubernetes 1.7.15
  • Kubernetes kubernetes 1.7.16
  • Kubernetes kubernetes 1.7.17
  • Kubernetes kubernetes 1.7.2
  • Kubernetes kubernetes 1.7.3
  • Kubernetes kubernetes 1.7.4
  • Kubernetes kubernetes 1.7.5
  • Kubernetes kubernetes 1.7.6
  • Kubernetes kubernetes 1.7.7
  • Kubernetes kubernetes 1.7.8
  • Kubernetes kubernetes 1.7.9
  • Kubernetes kubernetes 1.8.0
  • Kubernetes kubernetes 1.8.1
  • Kubernetes kubernetes 1.8.10
  • Kubernetes kubernetes 1.8.11
  • Kubernetes kubernetes 1.8.12
  • Kubernetes kubernetes 1.8.13
  • Kubernetes kubernetes 1.8.14
  • Kubernetes kubernetes 1.8.15
  • Kubernetes kubernetes 1.8.16
  • Kubernetes kubernetes 1.8.2
  • Kubernetes kubernetes 1.8.3
  • Kubernetes kubernetes 1.8.4
  • Kubernetes kubernetes 1.8.5
  • Kubernetes kubernetes 1.8.6
  • Kubernetes kubernetes 1.8.7
  • Kubernetes kubernetes 1.8.8
  • Kubernetes kubernetes 1.8.9
  • Kubernetes kubernetes 1.9.0
  • Kubernetes kubernetes 1.9.1
  • Kubernetes kubernetes 1.9.10
  • Kubernetes kubernetes 1.9.11
  • Kubernetes kubernetes 1.9.12
  • Kubernetes kubernetes 1.9.2
  • Kubernetes kubernetes 1.9.3
  • Kubernetes kubernetes 1.9.4
  • Kubernetes kubernetes 1.9.5
  • Kubernetes kubernetes 1.9.6
  • Kubernetes kubernetes 1.9.7
  • Kubernetes kubernetes 1.9.8
  • Kubernetes kubernetes 1.9.9
  • Netapp trident -
  • Redhat openshift_container_platform 3.10
  • Redhat openshift_container_platform 3.11
  • Redhat openshift_container_platform 3.2
  • Redhat openshift_container_platform 3.3
  • Redhat openshift_container_platform 3.4
  • Redhat openshift_container_platform 3.5
  • Redhat openshift_container_platform 3.6
  • Redhat openshift_container_platform 3.8

References

  • BugTraq: 106068
  • CVE: CVE-2018-1002105

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out