Overview

FieldValue
ID1079
NameManage PodDisruptionBudgets cluster-wide
Risk CategoryDenial of Service
Risk LevelMedium
Role TypeClusterRole
API Groupspolicy
Resourcespoddisruptionbudgets
Verbscreate, update, patch, delete
TagsAvailabilityImpact DenialOfService Tampering

Description

Allows creating, updating, or deleting PodDisruptionBudgets (PDBs) cluster-wide. Maliciously configured PDBs (e.g., setting maxUnavailable to 0 for critical components) can prevent voluntary disruptions, or conversely, allow too many disruptions, leading to denial of service or impacting application availability.