<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Calico</title>
  <link>https://cvedaily.com/pages/tags/calico.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/calico.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Calico</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:41 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-41185 – When Calico is configured with the Azure IPAM plugin, the Calico CNI binary muta...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41185</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41185</guid>
    <pubDate>Thu, 28 May 2026 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-41185</strong></p>
  <p>When Calico is configured with the Azure IPAM plugin, the Calico CNI binary mutates the incoming CNI configuration to attach subnet information before delegating to the IPAM plugin. After mutating, the Azure IPAM helper logs the entire unmarshaled configuration map (stdinData) at INFO level to /var/log/calico/cni/cni.log on every CNI ADD and DEL invocation — once per pod scheduled or terminated o…</p>
  <p><strong>CVSS:</strong> 6.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41185">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-41184 – In Calico, the install-cni init container logs the rendered CNI configuration to...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41184</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41184</guid>
    <pubDate>Thu, 28 May 2026 17:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-41184</strong></p>
  <p>In Calico, the install-cni init container logs the rendered CNI configuration to standard output. When the configuration template uses the __SERVICEACCOUNT_TOKEN__ placeholder (Canal/Flannel-Calico deployments), the installer substitutes the live Kubernetes ServiceAccount bearer token before logging, exposing the token to any authenticated user with pods/log permission in the namespace with calic…</p>
  <p><strong>CVSS:</strong> 6.0 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41184">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-49697 – In the Linux kernel, the following vulnerability has been resolved:

bpf: Fix re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-49697</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-49697</guid>
    <pubDate>Wed, 26 Feb 2025 07:01:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-49697</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  bpf: Fix request_sock leak in sk lookup helpers  A customer reported a request_socket leak in a Calico cloud environment. We found that a BPF program was doing a socket lookup with takes a refcnt on the socket and that it was finding the request_socket but returning the parent LISTEN socket via sk_to_full_sk() without decrementi…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-49697">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-33522 – In vulnerable versions of Calico (v3.27.2 and below), Calico Enterprise (v3.19.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-33522</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-33522</guid>
    <pubDate>Mon, 29 Apr 2024 23:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-33522</strong></p>
  <p>In vulnerable versions of Calico (v3.27.2 and below), Calico Enterprise (v3.19.0-1, v3.18.1, v3.17.3 and below), and Calico Cloud (v19.2.0 and below), an attacker who has local access to the Kubernetes node, can escalate their privileges by exploiting a vulnerability in the Calico CNI install binary. The issue arises from an incorrect SUID (Set User ID) bit configuration in the binary, combined w…</p>
  <p><strong>CVSS:</strong> 6.7 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-33522">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-41378 – In certain conditions for Calico Typha (v3.26.2, v3.25.1 and below), and Calico ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-41378</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-41378</guid>
    <pubDate>Mon, 06 Nov 2023 16:15:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-41378</strong></p>
  <p>In certain conditions for Calico Typha (v3.26.2, v3.25.1 and below), and Calico Enterprise Typha (v3.17.1, v3.16.3, v3.15.3 and below), a client TLS handshake can block the Calico Typha server indefinitely, resulting in denial of service. The TLS Handshake() call is performed inside the main server handle for loop without any timeout allowing an unclean TLS handshake to block the main loop indefi…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-41378">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-28224 – Clusters using Calico (version 3.22.1 and below), Calico Enterprise (version 3.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28224</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28224</guid>
    <pubDate>Mon, 06 Jun 2022 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-28224</strong></p>
  <p>Clusters using Calico (version 3.22.1 and below), Calico Enterprise (version 3.12.0 and below), may be vulnerable to route hijacking with the floating IP feature. Due to insufficient validation, a privileged attacker may be able to set a floating IP annotation to a pod even if the feature is not enabled. This may allow the attacker to intercept and reroute traffic to their compromised pod.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28224">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-37606 – Meow hash 0.5/calico does not sufficiently thwart key recovery by an attacker wh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-37606</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-37606</guid>
    <pubDate>Fri, 30 Jul 2021 14:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-37606</strong></p>
  <p>Meow hash 0.5/calico does not sufficiently thwart key recovery by an attacker who can query whether there's a collision in the bottom bits of the hashes of two messages, as demonstrated by an attack against a long-running web service that allows the attacker to infer collisions by measuring timing differences.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-203</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-37606">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2020-13597 – Clusters using Calico (version 3.14.0 and below), Calico Enterprise (version 2.8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-13597</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-13597</guid>
    <pubDate>Wed, 03 Jun 2020 17:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2020-13597</strong></p>
  <p>Clusters using Calico (version 3.14.0 and below), Calico Enterprise (version 2.8.2 and below), may be vulnerable to information disclosure if IPv6 is enabled but unused. A compromised pod with sufficient privilege is able to reconfigure the node’s IPv6 interface due to the node accepting route advertisement by default, allowing the attacker to redirect full or partial network traffic from the nod…</p>
  <p><strong>CVSS:</strong> 6.0 · <strong>CWE:</strong> CWE-201</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-13597">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
