VDB
Sign up
—

GO-2023-1549

Improper input validation in github.com/openshift/apiserver-library-go

Quick fix

GO-2023-1549 — github.com/openshift/apiserver-library-go: upgrade to the fixed version with the command below.

go get github.com/openshift/apiserver-library-go@v0.0.0-20230119093715-30f75d79e424

Details

Low-privileged users can set the seccomp profile for pods they control to "unconfined."

By default, the seccomp profile used in the restricted-v2 Security Context Constraint (SCC) is "runtime/default," allowing users to disable seccomp for pods they can create and modify.

Are you affected?

Enter the version of the package you're using.

Affected packages

Go/github.com/openshift/apiserver-library-go
Introduced in: 0Fixed in: 0.0.0-20230119093715-30f75d79e424
Fixgo get github.com/openshift/apiserver-library-go@v0.0.0-20230119093715-30f75d79e424

References