#VU117333 Race condition in Kubernetes - CVE-2024-7598

 

#VU117333 Race condition in Kubernetes - CVE-2024-7598

Published: October 17, 2025


Vulnerability identifier: #VU117333
Vulnerability risk: Low
CVSSv4.0: CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2024-7598
CWE-ID: CWE-362
Exploitation vector: Adjecent network
Exploit availability: No public exploit available
Vulnerable software:
Kubernetes
Software vendor:
Kubernetes

Description

The vulnerability allows an adjacent attacker to escalate privileges on the system.

The vulnerability exists due to a malicious or compromised pod could bypass network restrictions enforced by network policies during namespace deletion. An adjacent attacker can exploit the race and gain unauthorized access to sensitive information and escalate privileges on the system.


Remediation

Install updates from vendor's website.

External links