Vulnerability Report: GO-2021-0065
- CVE-2019-11250, GHSA-jmrx-5g74-6v2f
- Affects: k8s.io/client-go
- Published: Apr 14, 2021
- Modified: Jul 19, 2024
Authorization tokens may be inappropriately logged if the verbosity level is set to a debug level.
Affected Packages
-
PathGo VersionsSymbols
-
before v0.17.0
5 unexported affected symbols
- basicAuthRoundTripper.RoundTrip
- bearerAuthRoundTripper.RoundTrip
- debuggingRoundTripper.RoundTrip
- impersonatingRoundTripper.RoundTrip
- userAgentRoundTripper.RoundTrip
Aliases
References
- https://github.com/kubernetes/kubernetes/pull/81330
- https://github.com/kubernetes/kubernetes/commit/4441f1d9c3e94d9a3d93b4f184a591cab02a5245
- https://github.com/kubernetes/kubernetes/issues/81114
- https://vuln.go.dev/ID/GO-2021-0065.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.