Vulnerability Database
Blog
FAQ
Docs
GO-2022-0457
See a problem?
Source
https://pkg.go.dev/vuln/GO-2022-0457
Import Source
https://vuln.go.dev/ID/GO-2022-0457.json
JSON Data
https://api.osv.dev/v1/vulns/GO-2022-0457
Aliases
BIT-cilium-2022-29178
BIT-cilium-operator-2022-29178
BIT-cilium-proxy-2022-29178
BIT-hubble-2022-29178
BIT-hubble-relay-2022-29178
BIT-hubble-ui-2022-29178
BIT-hubble-ui-backend-2022-29178
CVE-2022-29178
GHSA-6p8v-8cq8-v2r3
Published
2024-08-21T15:11:33Z
Modified
2024-08-21T15:26:55.180862Z
Summary
Access to Unix domain socket can lead to privileges escalation in Cilium in github.com/cilium/cilium
Details
Access to Unix domain socket can lead to privileges escalation in Cilium in github.com/cilium/cilium
References
https://github.com/cilium/cilium/security/advisories/GHSA-6p8v-8cq8-v2r3
https://nvd.nist.gov/vuln/detail/CVE-2022-29178
https://github.com/cilium/cilium/releases/tag/v1.10.11
https://github.com/cilium/cilium/releases/tag/v1.11.5
https://github.com/cilium/cilium/releases/tag/v1.9.16
Affected packages
Go
/
github.com/cilium/cilium
Package
Name
github.com/cilium/cilium
View open source insights on deps.dev
Purl
pkg:golang/github.com/cilium/cilium
Affected ranges
Type
SEMVER
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.9.16
Introduced
1.10.0
Fixed
1.10.11
Introduced
1.11.0
Fixed
1.11.5
GO-2022-0457 - OSV