Ensure that the runtime mounts RO volumes read-only by joelsmith · Pull Request #58720 · kubernet...
What this PR does / why we need it: This change is part of the fix to address CVE-2017-1002102 (#60814). This change makes it so that containers cannot write to secret, configMap, downwardAPI and p...