IBM Security Bulletin: A Security Vulnerability could affect IBM Cloud Private

Jan 15, 2019 9:01 am EST

Categorized: Medium Severity

Share this post:

IBM Cloud Private could allow a remote attacker to bypass security restrictions due to Calico CNI Logging which can expose Kubernetes service account tokens

CVE(s): Not Applicable

Affected product(s) and affected version(s):

IBM Cloud Private 2.1.0.3

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=ibm10793775
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/152996



from IBM Product Security Incident Response Team https://ibm.co/2RMxTay