FlawAtlas
Search the atlas
CVE-2023-3955 High

Kubernetes privilege escalation vulnerability

A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.

Exploit probability 3.4%
Published October 31, 2023
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

198 explicit affected versions

Go k8s.io/kubernetes

1 explicit affected versions

Go k8s.io/kubernetes
Go k8s.io/mount-utils
Chainguard cluster-autoscaler-1.26
Chainguard cluster-autoscaler-1.26-compat
Wolfi cluster-autoscaler-1.26
Wolfi cluster-autoscaler-1.26-compat
Chainguard cluster-autoscaler-1.27
Chainguard cluster-autoscaler-1.27-compat
Wolfi cluster-autoscaler-1.27
Wolfi cluster-autoscaler-1.27-compat
Chainguard kubeflow-pipelines
Chainguard cluster-autoscaler-1.28
Chainguard cluster-autoscaler-1.28-compat
Wolfi cluster-autoscaler-1.28
Wolfi cluster-autoscaler-1.28-compat

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2023-3955

A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.

View original source
Open Source Vulnerabilities GHSA-q78c-gwqw-jcmc

A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.

View original source
Open Source Vulnerabilities GO-2023-2170

A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes may be able to escalate to admin privileges on those nodes. Kubernetes clusters are only affected if they include Windows nodes.

View original source

05 / REFERENCES

Further evidence