Database/Container, Kubernetes & orchestration
Kubernetes (kube-apiserver): NetworkPolicy is not applied during a race in namespace termination, so pods briefly run
CVE-2024-7598Container, Kubernetes & orchestrationcurated
Impact
NetworkPolicy is not applied during a race in namespace termination, so pods briefly run unrestricted
Who can reach it
Cluster user who can create and delete namespaces
What to do
Rolling control-plane upgrade; treat namespace churn as a policy-gap window
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.