Denial of Service Vulnerability in SUSE k3s
CVE-2023-32187
7.5HIGH
What is CVE-2023-32187?
A vulnerability in SUSE k3s allows attackers with access to the k3s server's apiserver/supervisor port (TCP 6443) to trigger denial of service conditions. This affects several versions of k3s, potentially leading to unavailability of services due to resource exhaustion. It is crucial for users to assess their deployments and apply appropriate security patches to mitigate the risk posed by this vulnerability.
Affected Version(s)
k3s v1.24.0
k3s v1.25.0
k3s v1.26.0