Skip to content

klient:v0.1.0 need updating for CVE-2021-3121 #12

@sanchoooo

Description

@sanchoooo

An issue was discovered in GoGo Protobuf before 1.3.2. plugin/unmarshal/unmarshal.go lacks certain index validation, aka the "skippy peanut butter" issue.

https://bdhub.td.teradata.com/api/vulnerabilities/CVE-2021-3121

klient includes k8s.io/kubectl:v0.17.3. which has the protobuf issue.. recommending updateing kubectl

Metadata

Metadata

Assignees

Labels

bugSomething isn't working

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions