Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-ch7v-37xg-75ph: coreDNS vulnerable to Improper Restriction of Communication Channel to Intended Endpoints

A flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that were accessed by the FQDN in a format of <service>.<namespace>.svc.

ghsa
#git

coreDNS vulnerable to Improper Restriction of Communication Channel to Intended Endpoints

Moderate severity GitHub Reviewed Published Mar 3, 2023 to the GitHub Advisory Database • Updated Mar 3, 2023

Related news

CVE-2022-2835: Invalid Bug ID

A flaw was found in coreDNS. This flaw allows a malicious user to reroute internal calls to some internal services that were accessed by the FQDN in a format of <service>.<namespace>.svc.