Merge pull request #36292 from sftim/20220825_reinstate_cve_feed_announcement_link

Reinstate implementation details for CVE feed announcement
pull/36764/head
Kubernetes Prow Robot 2022-09-12 08:59:24 -07:00 committed by GitHub
commit 76898bab5d
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 8 additions and 0 deletions

View File

@ -48,6 +48,14 @@ official Kubernetes CVEs
releases through their work in Kubernetes Community - via various Special
Interest Groups and Committees.
## Implementation Details
A supporting
[contributor blog](https://kubernetes.dev/blog/2022/09/12/k8s-cve-feed-alpha/)
was published that describes in depth on how this CVE feed was implemented to
ensure the feed was reasonably protected against tampering and was automatically
updated after a new CVE was announced.
## What's Next?
In order to graduate this feature, SIG Security