<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cpe="http://cpe.mitre.org/language/2.0" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvssv2="http://scap.nist.gov/schema/cvss-v2/1.0" xmlns:cvssv3="https://www.first.org/cvss/cvss-v3.0.xsd" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:ns0="http://purl.org/dc/elements/1.1/" xmlns:prod="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/prod" xmlns:scap-core="http://scap.nist.gov/schema/scap-core/1.0" xmlns:sch="http://purl.oclc.org/dsdl/schematron" xmlns:vuln="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
  <DocumentTitle xml:lang="en">CVE-2020-8565</DocumentTitle>
  <DocumentType>SUSE CVE</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>SUSE CVE-2020-8565</ID>
    </Identification>
    <Status>Interim</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>42</Number>
        <Date>2022-11-09T01:28:30Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2021-05-30T14:38:02Z</InitialReleaseDate>
    <CurrentReleaseDate>2022-11-09T01:28:30Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf-cve.pl</Engine>
      <Date>2020-12-27T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="CVE" Type="Summary" Ordinal="1" xml:lang="en">CVE-2020-8565</Note>
    <Note Title="Mitre CVE Description" Type="Description" Ordinal="2" xml:lang="en">In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &lt;= v1.19.3, &lt;= v1.18.10, &lt;= v1.17.13, &lt; v1.20.0-alpha2.</Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="4" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
  </DocumentNotes>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007989.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:783-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007991.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:785-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007994.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:788-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007995.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:789-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007997.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:791-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007998.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:793-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008028.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:822-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008031.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:825-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008037.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:831-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008038.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:832-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008039.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:833-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008040.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:834-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008044.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:837-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008054.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:848-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008055.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:849-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008056.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:850-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008057.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:851-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/008058.html</URL>
      <Description>E-Mail link for SUSE-CU-2020:852-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007973.html</URL>
      <Description>E-Mail link for SUSE-SU-2020:3760-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://lists.suse.com/pipermail/sle-security-updates/2020-December/007972.html</URL>
      <Description>E-Mail link for SUSE-SU-2020:3761-1</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/prod">
    <Branch Type="Product Family" Name="Container caasp/v4/coredns:1.6.7">
      <Branch Type="Product Name" Name="Container caasp/v4/coredns:1.6.7">
        <FullProductName ProductID="Container caasp/v4/coredns:1.6.7">Container caasp/v4/coredns:1.6.7</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="Container caasp/v4/etcd:3.4.13">
      <Branch Type="Product Name" Name="Container caasp/v4/etcd:3.4.13">
        <FullProductName ProductID="Container caasp/v4/etcd:3.4.13">Container caasp/v4/etcd:3.4.13</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="Container caasp/v4/helm-tiller:2.16.12">
      <Branch Type="Product Name" Name="Container caasp/v4/helm-tiller:2.16.12">
        <FullProductName ProductID="Container caasp/v4/helm-tiller:2.16.12">Container caasp/v4/helm-tiller:2.16.12</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="Container caasp/v4/hyperkube:v1.17.17">
      <Branch Type="Product Name" Name="Container caasp/v4/hyperkube:v1.17.17">
        <FullProductName ProductID="Container caasp/v4/hyperkube:v1.17.17">Container caasp/v4/hyperkube:v1.17.17</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="Container caasp/v4/kubernetes-client:1.17.17">
      <Branch Type="Product Name" Name="Container caasp/v4/kubernetes-client:1.17.17">
        <FullProductName ProductID="Container caasp/v4/kubernetes-client:1.17.17">Container caasp/v4/kubernetes-client:1.17.17</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="Container caasp/v4/kucero:1.3.0">
      <Branch Type="Product Name" Name="Container caasp/v4/kucero:1.3.0">
        <FullProductName ProductID="Container caasp/v4/kucero:1.3.0">Container caasp/v4/kucero:1.3.0</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="Container caasp/v4/kured:1.3.0">
      <Branch Type="Product Name" Name="Container caasp/v4/kured:1.3.0">
        <FullProductName ProductID="Container caasp/v4/kured:1.3.0">Container caasp/v4/kured:1.3.0</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE CaaS Platform 4.0">
      <Branch Type="Product Name" Name="SUSE CaaS Platform 4.0">
        <FullProductName ProductID="SUSE CaaS Platform 4.0" CPE="cpe:/o:suse:caasp:4.0">SUSE CaaS Platform 4.0</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE CaaS Platform 4.5">
      <Branch Type="Product Name" Name="SUSE CaaS Platform 4.5">
        <FullProductName ProductID="SUSE CaaS Platform 4.5" CPE="cpe:/o:suse:caasp:4.5">SUSE CaaS Platform 4.5</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Enterprise Storage 6">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise High Performance Computing 15 SP1">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server 15 SP1">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Linux Enterprise Server for SAP Applications 15 SP1">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Manager Proxy 4.0">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Manager Retail Branch Server 4.0">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Family" Name="SUSE Manager Server 4.0">
      <Branch Type="Product Name" Name="SUSE Linux Enterprise Module for Containers 15 SP1">
        <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1" CPE="cpe:/o:suse:sle-module-containers:15:sp1">SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="caasp-release-4.2.4-24.36.1">
      <FullProductName ProductID="caasp-release-4.2.4-24.36.1">caasp-release-4.2.4-24.36.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="caasp-release-4.5.2-1.8.2">
      <FullProductName ProductID="caasp-release-4.5.2-1.8.2">caasp-release-4.5.2-1.8.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="coredns-1.6.7-3.13.1">
      <FullProductName ProductID="coredns-1.6.7-3.13.1">coredns-1.6.7-3.13.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cri-o-1.16.1-3.37.3">
      <FullProductName ProductID="cri-o-1.16.1-3.37.3" CPE="cpe:2.3:a:kubernetes:cri-o:1.16.1:*:*:*:*:*:*:*">cri-o-1.16.1-3.37.3</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cri-o-1.18-1.18.4-4.3.2">
      <FullProductName ProductID="cri-o-1.18-1.18.4-4.3.2">cri-o-1.18-1.18.4-4.3.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2">
      <FullProductName ProductID="cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2">cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="cri-o-kubeadm-criconfig-1.16.1-3.37.3">
      <FullProductName ProductID="cri-o-kubeadm-criconfig-1.16.1-3.37.3">cri-o-kubeadm-criconfig-1.16.1-3.37.3</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="etcd-3.4.13-4.15.1">
      <FullProductName ProductID="etcd-3.4.13-4.15.1" CPE="cpe:2.3:a:etcd:etcd:3.4.13:*:*:*:*:*:*:*">etcd-3.4.13-4.15.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="etcdctl-3.4.13-3.3.1">
      <FullProductName ProductID="etcdctl-3.4.13-3.3.1">etcdctl-3.4.13-3.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="etcdctl-3.4.13-4.15.1">
      <FullProductName ProductID="etcdctl-3.4.13-4.15.1">etcdctl-3.4.13-4.15.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="helm-2.16.12-3.10.1">
      <FullProductName ProductID="helm-2.16.12-3.10.1" CPE="cpe:2.3:a:helm:helm:2.16.12:*:*:*:*:*:*:*">helm-2.16.12-3.10.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="helm2-2.16.12-3.3.1">
      <FullProductName ProductID="helm2-2.16.12-3.3.1" CPE="cpe:2.3:a:helm:helm:2.16.12:*:*:*:*:*:*:*">helm2-2.16.12-3.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="helm3-3.3.3-1.3.1">
      <FullProductName ProductID="helm3-3.3.3-1.3.1" CPE="cpe:2.3:a:helm:helm:3.3.3:*:*:*:*:*:*:*">helm3-3.3.3-1.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="helm3-3.3.3-3.8.1">
      <FullProductName ProductID="helm3-3.3.3-3.8.1" CPE="cpe:2.3:a:helm:helm:3.3.3:*:*:*:*:*:*:*">helm3-3.3.3-3.8.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kubernetes-1.18-kubeadm-1.18.10-4.3.1">
      <FullProductName ProductID="kubernetes-1.18-kubeadm-1.18.10-4.3.1">kubernetes-1.18-kubeadm-1.18.10-4.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kubernetes-1.18-kubelet-1.18.10-4.3.1">
      <FullProductName ProductID="kubernetes-1.18-kubelet-1.18.10-4.3.1">kubernetes-1.18-kubelet-1.18.10-4.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kubernetes-client-1.17.13-4.21.2">
      <FullProductName ProductID="kubernetes-client-1.17.13-4.21.2">kubernetes-client-1.17.13-4.21.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kubernetes-common-1.17.13-4.21.2">
      <FullProductName ProductID="kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kubernetes-kubeadm-1.17.13-4.21.2">
      <FullProductName ProductID="kubernetes-kubeadm-1.17.13-4.21.2">kubernetes-kubeadm-1.17.13-4.21.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kubernetes-kubelet-1.17.13-4.21.2">
      <FullProductName ProductID="kubernetes-kubelet-1.17.13-4.21.2">kubernetes-kubelet-1.17.13-4.21.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="kucero-1.3.0-1.3.1">
      <FullProductName ProductID="kucero-1.3.0-1.3.1">kucero-1.3.0-1.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="patterns-caasp-Management-4.5-3.3.1">
      <FullProductName ProductID="patterns-caasp-Management-4.5-3.3.1">patterns-caasp-Management-4.5-3.3.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="skuba-1.4.11-3.49.2">
      <FullProductName ProductID="skuba-1.4.11-3.49.2">skuba-1.4.11-3.49.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="skuba-2.1.11-3.10.1">
      <FullProductName ProductID="skuba-2.1.11-3.10.1">skuba-2.1.11-3.10.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="skuba-update-1.4.11-3.49.2">
      <FullProductName ProductID="skuba-update-1.4.11-3.49.2">skuba-update-1.4.11-3.49.2</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="skuba-update-2.1.11-3.10.1">
      <FullProductName ProductID="skuba-update-2.1.11-3.10.1">skuba-update-2.1.11-3.10.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="terraform-provider-aws-2.59.0-1.6.1">
      <FullProductName ProductID="terraform-provider-aws-2.59.0-1.6.1">terraform-provider-aws-2.59.0-1.6.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="velero-1.4.2-3.3.1">
      <FullProductName ProductID="velero-1.4.2-3.3.1">velero-1.4.2-3.3.1</FullProductName>
    </Branch>
    <Relationship ProductReference="coredns-1.6.7-3.13.1" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/coredns:1.6.7">
      <FullProductName ProductID="Container caasp/v4/coredns:1.6.7:coredns-1.6.7-3.13.1">coredns-1.6.7-3.13.1 as a component of Container caasp/v4/coredns:1.6.7</FullProductName>
    </Relationship>
    <Relationship ProductReference="etcd-3.4.13-4.15.1" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/etcd:3.4.13">
      <FullProductName ProductID="Container caasp/v4/etcd:3.4.13:etcd-3.4.13-4.15.1">etcd-3.4.13-4.15.1 as a component of Container caasp/v4/etcd:3.4.13</FullProductName>
    </Relationship>
    <Relationship ProductReference="etcdctl-3.4.13-4.15.1" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/etcd:3.4.13">
      <FullProductName ProductID="Container caasp/v4/etcd:3.4.13:etcdctl-3.4.13-4.15.1">etcdctl-3.4.13-4.15.1 as a component of Container caasp/v4/etcd:3.4.13</FullProductName>
    </Relationship>
    <Relationship ProductReference="helm-2.16.12-3.10.1" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/helm-tiller:2.16.12">
      <FullProductName ProductID="Container caasp/v4/helm-tiller:2.16.12:helm-2.16.12-3.10.1">helm-2.16.12-3.10.1 as a component of Container caasp/v4/helm-tiller:2.16.12</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-common-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/hyperkube:v1.17.17">
      <FullProductName ProductID="Container caasp/v4/hyperkube:v1.17.17:kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2 as a component of Container caasp/v4/hyperkube:v1.17.17</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-client-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kubernetes-client:1.17.17">
      <FullProductName ProductID="Container caasp/v4/kubernetes-client:1.17.17:kubernetes-client-1.17.13-4.21.2">kubernetes-client-1.17.13-4.21.2 as a component of Container caasp/v4/kubernetes-client:1.17.17</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-common-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kubernetes-client:1.17.17">
      <FullProductName ProductID="Container caasp/v4/kubernetes-client:1.17.17:kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2 as a component of Container caasp/v4/kubernetes-client:1.17.17</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-client-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kucero:1.3.0">
      <FullProductName ProductID="Container caasp/v4/kucero:1.3.0:kubernetes-client-1.17.13-4.21.2">kubernetes-client-1.17.13-4.21.2 as a component of Container caasp/v4/kucero:1.3.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-common-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kucero:1.3.0">
      <FullProductName ProductID="Container caasp/v4/kucero:1.3.0:kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2 as a component of Container caasp/v4/kucero:1.3.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kucero-1.3.0-1.3.1" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kucero:1.3.0">
      <FullProductName ProductID="Container caasp/v4/kucero:1.3.0:kucero-1.3.0-1.3.1">kucero-1.3.0-1.3.1 as a component of Container caasp/v4/kucero:1.3.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-client-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kured:1.3.0">
      <FullProductName ProductID="Container caasp/v4/kured:1.3.0:kubernetes-client-1.17.13-4.21.2">kubernetes-client-1.17.13-4.21.2 as a component of Container caasp/v4/kured:1.3.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-common-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="Container caasp/v4/kured:1.3.0">
      <FullProductName ProductID="Container caasp/v4/kured:1.3.0:kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2 as a component of Container caasp/v4/kured:1.3.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="caasp-release-4.2.4-24.36.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:caasp-release-4.2.4-24.36.1">caasp-release-4.2.4-24.36.1 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="cri-o-1.16.1-3.37.3" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:cri-o-1.16.1-3.37.3">cri-o-1.16.1-3.37.3 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="cri-o-kubeadm-criconfig-1.16.1-3.37.3" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:cri-o-kubeadm-criconfig-1.16.1-3.37.3">cri-o-kubeadm-criconfig-1.16.1-3.37.3 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="etcdctl-3.4.13-4.15.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:etcdctl-3.4.13-4.15.1">etcdctl-3.4.13-4.15.1 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="helm-2.16.12-3.10.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:helm-2.16.12-3.10.1">helm-2.16.12-3.10.1 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="helm3-3.3.3-1.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:helm3-3.3.3-1.3.1">helm3-3.3.3-1.3.1 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-client-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:kubernetes-client-1.17.13-4.21.2">kubernetes-client-1.17.13-4.21.2 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-common-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-kubeadm-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:kubernetes-kubeadm-1.17.13-4.21.2">kubernetes-kubeadm-1.17.13-4.21.2 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-kubelet-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:kubernetes-kubelet-1.17.13-4.21.2">kubernetes-kubelet-1.17.13-4.21.2 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="skuba-1.4.11-3.49.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:skuba-1.4.11-3.49.2">skuba-1.4.11-3.49.2 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="skuba-update-1.4.11-3.49.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:skuba-update-1.4.11-3.49.2">skuba-update-1.4.11-3.49.2 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="terraform-provider-aws-2.59.0-1.6.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.0">
      <FullProductName ProductID="SUSE CaaS Platform 4.0:terraform-provider-aws-2.59.0-1.6.1">terraform-provider-aws-2.59.0-1.6.1 as a component of SUSE CaaS Platform 4.0</FullProductName>
    </Relationship>
    <Relationship ProductReference="caasp-release-4.5.2-1.8.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:caasp-release-4.5.2-1.8.2">caasp-release-4.5.2-1.8.2 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="cri-o-1.18-1.18.4-4.3.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:cri-o-1.18-1.18.4-4.3.2">cri-o-1.18-1.18.4-4.3.2 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2">cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="etcdctl-3.4.13-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:etcdctl-3.4.13-3.3.1">etcdctl-3.4.13-3.3.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="helm2-2.16.12-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:helm2-2.16.12-3.3.1">helm2-2.16.12-3.3.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="helm3-3.3.3-3.8.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:helm3-3.3.3-3.8.1">helm3-3.3.3-3.8.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-1.18-kubeadm-1.18.10-4.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:kubernetes-1.18-kubeadm-1.18.10-4.3.1">kubernetes-1.18-kubeadm-1.18.10-4.3.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-1.18-kubelet-1.18.10-4.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:kubernetes-1.18-kubelet-1.18.10-4.3.1">kubernetes-1.18-kubelet-1.18.10-4.3.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="patterns-caasp-Management-4.5-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:patterns-caasp-Management-4.5-3.3.1">patterns-caasp-Management-4.5-3.3.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="skuba-2.1.11-3.10.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:skuba-2.1.11-3.10.1">skuba-2.1.11-3.10.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="skuba-update-2.1.11-3.10.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:skuba-update-2.1.11-3.10.1">skuba-update-2.1.11-3.10.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="velero-1.4.2-3.3.1" RelationType="Default Component Of" RelatesToProductReference="SUSE CaaS Platform 4.5">
      <FullProductName ProductID="SUSE CaaS Platform 4.5:velero-1.4.2-3.3.1">velero-1.4.2-3.3.1 as a component of SUSE CaaS Platform 4.5</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-client-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Module for Containers 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1:kubernetes-client-1.17.13-4.21.2">kubernetes-client-1.17.13-4.21.2 as a component of SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
    </Relationship>
    <Relationship ProductReference="kubernetes-common-1.17.13-4.21.2" RelationType="Default Component Of" RelatesToProductReference="SUSE Linux Enterprise Module for Containers 15 SP1">
      <FullProductName ProductID="SUSE Linux Enterprise Module for Containers 15 SP1:kubernetes-common-1.17.13-4.21.2">kubernetes-common-1.17.13-4.21.2 as a component of SUSE Linux Enterprise Module for Containers 15 SP1</FullProductName>
    </Relationship>
  </ProductTree>
  <Vulnerability xmlns="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/vuln" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">In Kubernetes, if the logging level is set to at least 9, authorization and bearer tokens will be written to log files. This can occur both in API server logs and client tool output like kubectl. This affects &lt;= v1.19.3, &lt;= v1.18.10, &lt;= v1.17.13, &lt; v1.20.0-alpha2.</Note>
    </Notes>
    <CVE>CVE-2020-8565</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>Container caasp/v4/coredns:1.6.7:coredns-1.6.7-3.13.1</ProductID>
        <ProductID>Container caasp/v4/etcd:3.4.13:etcd-3.4.13-4.15.1</ProductID>
        <ProductID>Container caasp/v4/etcd:3.4.13:etcdctl-3.4.13-4.15.1</ProductID>
        <ProductID>Container caasp/v4/helm-tiller:2.16.12:helm-2.16.12-3.10.1</ProductID>
        <ProductID>Container caasp/v4/hyperkube:v1.17.17:kubernetes-common-1.17.13-4.21.2</ProductID>
        <ProductID>Container caasp/v4/kubernetes-client:1.17.17:kubernetes-client-1.17.13-4.21.2</ProductID>
        <ProductID>Container caasp/v4/kubernetes-client:1.17.17:kubernetes-common-1.17.13-4.21.2</ProductID>
        <ProductID>Container caasp/v4/kucero:1.3.0:kubernetes-client-1.17.13-4.21.2</ProductID>
        <ProductID>Container caasp/v4/kucero:1.3.0:kubernetes-common-1.17.13-4.21.2</ProductID>
        <ProductID>Container caasp/v4/kucero:1.3.0:kucero-1.3.0-1.3.1</ProductID>
        <ProductID>Container caasp/v4/kured:1.3.0:kubernetes-client-1.17.13-4.21.2</ProductID>
        <ProductID>Container caasp/v4/kured:1.3.0:kubernetes-common-1.17.13-4.21.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:caasp-release-4.2.4-24.36.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:cri-o-1.16.1-3.37.3</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:cri-o-kubeadm-criconfig-1.16.1-3.37.3</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:etcdctl-3.4.13-4.15.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:helm-2.16.12-3.10.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:helm3-3.3.3-1.3.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:kubernetes-client-1.17.13-4.21.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:kubernetes-common-1.17.13-4.21.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:kubernetes-kubeadm-1.17.13-4.21.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:kubernetes-kubelet-1.17.13-4.21.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:skuba-1.4.11-3.49.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:skuba-update-1.4.11-3.49.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.0:terraform-provider-aws-2.59.0-1.6.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:caasp-release-4.5.2-1.8.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:cri-o-1.18-1.18.4-4.3.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:cri-o-1.18-kubeadm-criconfig-1.18.4-4.3.2</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:etcdctl-3.4.13-3.3.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:helm2-2.16.12-3.3.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:helm3-3.3.3-3.8.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:kubernetes-1.18-kubeadm-1.18.10-4.3.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:kubernetes-1.18-kubelet-1.18.10-4.3.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:patterns-caasp-Management-4.5-3.3.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:skuba-2.1.11-3.10.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:skuba-update-2.1.11-3.10.1</ProductID>
        <ProductID>SUSE CaaS Platform 4.5:velero-1.4.2-3.3.1</ProductID>
        <ProductID>SUSE Linux Enterprise Module for Containers 15 SP1:kubernetes-client-1.17.13-4.21.2</ProductID>
        <ProductID>SUSE Linux Enterprise Module for Containers 15 SP1:kubernetes-common-1.17.13-4.21.2</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSetV2>
        <BaseScoreV2>2.1</BaseScoreV2>
        <VectorV2>AV:L/AC:L/Au:N/C:P/I:N/A:N</VectorV2>
      </ScoreSetV2>
      <ScoreSetV3>
        <BaseScoreV3>4.7</BaseScoreV3>
        <VectorV3>CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N</VectorV3>
      </ScoreSetV3>
    </CVSSScoreSets>
  </Vulnerability>
</cvrfdoc>
