Possible exploit variant for CVE-2024-9042 (Kubernetes OS Command Injection), (Wed, Dec 10th)

SANS Internet Storm Center, InfoCON: green 2025-12-10

Summary:

Last year, Kubernetes fixed a command injection vulnerability in the Kubernetes NodeLogQuery feature (%%cve:2024-9042%%) [1]. To exploit the vulnerability, several conditions had to be met:

Link:

https://isc.sans.edu/diary/rss/32554

From feeds:

Intel Hub ยป T01 - SANS Internet Storm Center, InfoCON: green

Tags:

Date tagged:

12/10/2025, 18:45

Date published:

12/10/2025, 10:25