Showing 1 vulnerability on this page for CSI Snapshotter

Signals CISA KEV Ransomware Nuclei
Kubernetes vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Kubernetes CSI snapshot-controller DoS

Kubernetes CSI snapshot-controller prior to v2.1.3 and v3.0.2 could panic when processing a VolumeSnapshot custom resource when: - The VolumeSnapshot referenced a non-existing PersistentVolumeClaim and the VolumeSnapshot did not reference any VolumeSnapshotClass. - The snapshot-controller crashes, is automatically restarted by Kubernetes, and processes the same VolumeSnapshot custom resource after the restart, entering an endless crashloop. Only the volume snapshot feature is affected by this vu

CWE-476Jan 21, 2021
CVSS4.3v3.1EPSS2.28%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX