CVE-2024-21400
Executive Summary
Microsoft Azure Kubernetes Service (AKS) Confidential Container Elevation of Privilege Vulnerability (CVE‑2024‑21400) allows an attacker with access to a confidential container to gain elevated privileges within the host cluster, potentially compromising other workloads and sensitive data. The flaw stems from improper isolation of confidential containers, enabling privilege escalation without requiring additional authentication. No KEV listing yet, but mitigations include patching AKS to the latest version, disabling confidential containers if not needed, and enforcing least‑privilege RBAC.
Authoritative CVE Metadata - CVSS Base Score: 9.0 (CRITICAL) - Published: 2024-03-12T17:15:49.797 - Last Modified: 2026-09-14T13:44:43.017
Original Description: Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
"The industrial landscape is already littered with remains of once successful companies that could not adapt their strategic vision to altered conditions of competition."
— Abernathy