CVE-2024-3177 | Kubernetes kube-apiserver up to 1.27.12/1.28.8/1.29.3 Mountable Secrets Policy envFrom information disclosure (ID 12433 / Nessus ID 278691)
A vulnerability marked as problematic has been reported in Kubernetes kube-apiserver up to 1.27.12/1.28.8/1.29.3. Affected is an unknown function of the component Mountable Secrets Policy. This manipulation of the argument envFrom causes information disclosure.
The identification of this vulnerability is CVE-2024-3177. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.