Check: CNTR-MK-001630
Mirantis Kubernetes Engine STIG:
CNTR-MK-001630
(in version v1 r1)
Title
MKE must contain the latest updates. (Cat II impact)
Discussion
MKE must stay up to date with the latest patches, service packs, and hot fixes. Not updating MKE will expose the organization to vulnerabilities.
Check Content
Check for updates by logging in to the MKE WebUI and Navigating to admin >> Admin Settings >> Upgrade. In the "Choose MKE Version" section, select the drop-down. The UI will provide a list of available versions. If an updated version is available in the list, this is a finding.
Fix Text
Note: It is advisable to review the release notes to understand what changes and improvements come with the new version. Log in to the MKE WebUI and navigate to admin >> Admin Settings >> Upgrade. In the "Choose MKE Version" section, select the drop-down. Follow the on-screen instructions to start the upgrade.
Additional Identifiers
Rule ID: SV-260945r966192_rule
Vulnerability ID: V-260945
Group Title: SRG-APP-000456-CTR-001130
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-002605 |
The organization installs security-relevant software updates within an organization-defined time period of the release of the updates. |
Controls
Number | Title |
---|---|
SI-2 |
Flaw Remediation |