CVE-2023-42814
Denial of service from malicious image manifest in kyverno in github.com/kyverno/kyverno
EPSS 0.13%
Description
Denial of service from malicious image manifest in kyverno in github.com/kyverno/kyverno
How to fix CVE-2023-42814
To remediate CVE-2023-42814, upgrade the affected package to a fixed version below.
- Go/github.com/kyverno/kyverno—upgrade to 1.5.0-rc1.0.20230918070231-fec2992e3f9f or later
Is CVE-2023-42814 being exploited?
Low — EPSS is 0.1%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- >= 1.5.0-rc1.0.20230601080528-80d139bb5d1d, < 1.5.0-rc1.0.20230918070231-fec2992e3f9f