By the Year
In 2023 there have been 0 vulnerabilities in Cncf Portmap . Portmap did not have any published security vulnerabilities last year.
It may take a day or so for new Portmap vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Cncf Portmap Security Vulnerabilities
Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration
7.5 - High
- April 02, 2019
Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration which affects Kubernetes. The CNI 'portmap' plugin, used to setup HostPorts for CNI, inserts rules at the front of the iptables nat chains; which take precedence over the KUBE- SERVICES chain. Because of this, the HostPort/portmap rule could match incoming traffic even if there were better fitting, more specific service definition rules like NodePorts later in the chain. The issue is fixed in CNI 0.7.5 and Kubernetes 1.11.9, 1.12.7, 1.13.5, and 1.14.0.
Always-Incorrect Control Flow Implementation
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for NetApp Cloud Insights or by Cncf? Click the Watch button to subscribe.