CVE-2022-2385

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/07/2022
Last modified:
19/07/2022

Description

A security issue was discovered in aws-iam-authenticator where an allow-listed IAM identity may be able to modify their username and escalate privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kubernetes:aws-iam-authenticator:*:*:*:*:*:kubernetes:*:* 0.5.2 (including) 0.5.9 (excluding)