VDB

RHSA-2021%3A2130

RHSA-2021%3A2130 PUBLISHED CVSS 5.800000190734863 MEDIUM

A flaw was found in the Windows kube-proxy component. In a cloud environment that does not set the “.status.loadBalancer.ingress.ip” field in the LoadBalancer service status configuration (for example in AWS) the packets can be misrouted and reach an unintended destination.

Risk Scores

CVSS 3.1
5.800000190734863
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N

Affected Products

VendorProductVersions
Red Hatopenshift4-wincw/windows-machine-config-rhel8-operator@sha256:34a7784ef1e4cd3aa4a8c2151006ef56a60c8b30c9a7e25cdb198036de8c27e9_amd64 as a component of Red Hat OpenShift Container Platform 4.7openshift4-wincw/windows-machine-config-rhel8-operator@sha256:34a7784ef1e4cd3aa4a8c2151006ef56a60c8b30c9a7e25cdb198036de8c27e9_amd64
Red Hatopenshift4-wincw/windows-machine-config-operator-bundle@sha256:60ab0ad722725d13abdede0fa569ee4ad2ec95350584dfd51c016510142f0523_amd64 as a component of Red Hat OpenShift Container Platform 4.7*

Timeline

  • Jun 23, 2021 CVE Published
  • Mar 18, 2026 CVE Updated
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Distribution Patch
  • May 1, 2026 Security Advisory
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›