- What is the severity of CVE-2020-8554?
- CVE-2020-8554 has been scored as a medium severity vulnerability.
- How to fix CVE-2020-8554?
- As a workaround for remediating CVE-2020-8554: To restrict the use of external IPs we are providing an admission webhook container: k8s.gcr.io/multitenancy/externalip-webhook:v1.0.0. The source code and deployment instructions are published at https://github.com/kubernetes-sigs/externalip-webhook. Alternatively, external IPs can be restricted using OPA Gatekeeper. A sample ConstraintTemplate and Constraint can be found here: https://github.com/open-policy-agent/gatekeeper-library/tree/master/library/general/externalip.
- Is CVE-2020-8554 being actively exploited in the wild?
- It is possible that CVE-2020-8554 is being exploited or will be exploited in a near future based on public information. According to its EPSS score, there is a ~31% probability that this vulnerability will be exploited by malicious actors in the next 30 days.
- What software or system is affected by CVE-2020-8554?
- CVE-2020-8554 affects Kubernetes Kubernetes.