Kube-proxy on Windows can unintentionally forward traffic to local processes listening on the same port (spec.ports[*].port) as a LoadBalancer Service when the LoadBalancer controller does not set the status.loadBalancer.ingress[].ip field. Clusters
where the LoadBalancer controller sets the status.loadBalancer.ingress[].ip field are unaffected.
{
"nvd_published_at": "2023-10-30T03:15:07Z",
"github_reviewed_at": "2023-10-31T22:23:04Z",
"cwe_ids": [],
"severity": "MODERATE",
"github_reviewed": true
}