Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

NET_RAW Capabilities Not Being Dropped Security Query With Wrong Severity #5895

Closed
cxMiguelSilva opened this issue Oct 3, 2022 · 0 comments · Fixed by #5900
Closed

NET_RAW Capabilities Not Being Dropped Security Query With Wrong Severity #5895

cxMiguelSilva opened this issue Oct 3, 2022 · 0 comments · Fixed by #5900
Labels
bug Something isn't working community Community contribution hacktoberfest query New query feature

Comments

@cxMiguelSilva
Copy link
Collaborator

The security query is of High severity, however, this configuration does not present a sufficient dangerous impact to be considered HIGH. Some attack scenarios that can be leveraged using this configuration are arp spoofing and DNS cache poisoning, both of which require an initial compromise to the container. As such it is suggested that the severity of this query is downgraded to MEDIUM in Terraform and Kubernetes platforms.

Docs Reference

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working community Community contribution hacktoberfest query New query feature
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant