VDB

CVE-2021-25743

CVE-2021-25743 REJECTED CVSS 3 LOW

kubectl does not neutralize escape, meta or control sequences contained in the raw data it outputs to a terminal. This includes but is not limited to the unstructured string fields in objects such as Events.

EPSS 0.78% · 54.6th percentile

Risk Scores

CVSS 3.1
3
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:N/I:L/A:N
EPSS Score
0.78%
54.6th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSkubernetes0, 1.0
Ubuntu:Pro:20.04:LTSkubernetes1.0, 0
Ubuntu:24.04:LTSkubernetes0, 1.0

Timeline

  • Jan 6, 2022 CVE Published
  • Jan 7, 2022 EPSS Score
  • Mar 2, 2022 EPSS Score
  • Apr 25, 2022 EPSS Score
  • Jun 19, 2022 EPSS Score
  • Aug 13, 2022 EPSS Score
  • Sep 8, 2022 CVE Updated
  • Oct 6, 2022 EPSS Score
  • Nov 29, 2022 EPSS Score
  • Jan 23, 2023 EPSS Score
  • Mar 18, 2023 EPSS Score
  • May 11, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›