<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Cilium</title>
  <link>https://cvedaily.com/pages/tags/cilium.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/cilium.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Cilium</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:30 +0000</lastBuildDate>
  <item>
    <title>[Low] CVE-2026-10722 – A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the fun...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-10722</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-10722</guid>
    <pubDate>Wed, 03 Jun 2026 13:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-10722</strong></p>
  <p>A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipulation of the argument offset leads to integer overflow. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The name of the patch i…</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-189</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-10722">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2026-45886 – In the Linux kernel, the following vulnerability has been resolved:

bpf: Fix bp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45886</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45886</guid>
    <pubDate>Wed, 27 May 2026 14:17:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2026-45886</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  bpf: Fix bpf_xdp_store_bytes proto for read-only arg  While making some maps in Cilium read-only from the BPF side, we noticed that the bpf_xdp_store_bytes proto is incorrect. In particular, the verifier was throwing the following error:    ; ret = ctx_store_bytes(ctx, l3_off + offsetof(struct iphdr, saddr),…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45886">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41520 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41520</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41520</guid>
    <pubDate>Fri, 08 May 2026 23:16:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41520</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.17.15, 1.18.9, and 1.19.3, the output of cilium-bugtool can contain sensitive data when the tool is run against Cilium deployments with WireGuard encryption enabled. This issue has been patched in versions 1.17.15, 1.18.9, and 1.19.3.</p>
  <p><strong>CVSS:</strong> 7.9 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41520">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-33726 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33726</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33726</guid>
    <pubDate>Fri, 27 Mar 2026 01:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-33726</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.17.14, 1.18.8, and 1.19.2, Ingress Network Policies are not enforced for traffic from pods to L7 Services (Envoy, GAMMA) with a local backend on the same node, when Per-Endpoint Routing is enabled and BPF Host Routing is disabled. Per-Endpoint Routing is disabled by default, but is autom…</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33726">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-26963 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26963</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26963</guid>
    <pubDate>Fri, 20 Feb 2026 00:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-26963</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Versions 1.18.0 through 1.18.5 will incorrectly permit traffic from Pods on other nodes when Native Routing, WireGuard and Node Encryption are enabled. This issue has been fixed in version 1.18.6.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26963">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2023-54173 – In the Linux kernel, the following vulnerability has been resolved:

bpf: Disabl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-54173</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-54173</guid>
    <pubDate>Tue, 30 Dec 2025 13:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2023-54173</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  bpf: Disable preemption in bpf_event_output  We received report [1] of kernel crash, which is caused by using nesting protection without disabled preemption.  The bpf_event_output can be called by programs executed by bpf_prog_run_array_cg function that disabled migration but keeps preemption enabled.  This can cause task to be…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-54173">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-64715 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-64715</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-64715</guid>
    <pubDate>Sat, 29 Nov 2025 01:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-64715</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.16.17, 1.17.10, and 1.18.4, CiliumNetworkPolicys which use egress.toGroups.aws.securityGroupsIds to reference AWS security group IDs that do not exist or are not attached to any network interface may unintentionally allow broader outbound access than intended by the policy authors. In su…</p>
  <p><strong>CVSS:</strong> 4.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-64715">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Unknown] CVE-2025-40183 – In the Linux kernel, the following vulnerability has been resolved:

bpf: Fix me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-40183</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-40183</guid>
    <pubDate>Wed, 12 Nov 2025 22:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk unknown">Unknown</span> CVE-2025-40183</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  bpf: Fix metadata_dst leak __bpf_redirect_neigh_v{4,6}  Cilium has a BPF egress gateway feature which forces outgoing K8s Pod traffic to pass through dedicated egress gateways which then SNAT the traffic in order to interact with stable IPs outside the cluster.  The traffic is directed to the gateway via vxlan tunnel in collect…</p>
  <p><strong>CVSS:</strong> N/A · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-40183">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-30163 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-30163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-30163</guid>
    <pubDate>Mon, 24 Mar 2025 19:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-30163</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Node based network policies (`fromNodes` and `toNodes`) will incorrectly permit traffic to/from non-node endpoints that share the labels specified in `fromNodes` and `toNodes` sections of network policies. Node based network policy is disabled by default in Cilium. This issue affects: Cilium v1.16 between v…</p>
  <p><strong>CVSS:</strong> 3.4 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-30163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-30162 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-30162</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-30162</guid>
    <pubDate>Mon, 24 Mar 2025 19:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-30162</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. For Cilium users who use Gateway API for Ingress for some services and use LB-IPAM or BGP for LB Service implementation and use network policies to block egress traffic from workloads in a namespace to workloads in other namespaces, egress traffic from workloads covered by such network policies to LoadBalan…</p>
  <p><strong>CVSS:</strong> 3.2 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-30162">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-52529 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-52529</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-52529</guid>
    <pubDate>Mon, 25 Nov 2024 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-52529</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. For users with the following configuration: 1. An allow policy that selects a Layer 3 destination and a port range `AND` 2. A Layer 7 allow policy that selects a specific port within the first policy's range the Layer 7 enforcement would not occur for the traffic selected by the Layer 7 policy. This issue o…</p>
  <p><strong>CVSS:</strong> 5.8 · <strong>CWE:</strong> CWE-755</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-52529">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-42486 – Cilium is a networking, observability, and security solution with an eBPF-based ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-42486</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-42486</guid>
    <pubDate>Fri, 16 Aug 2024 15:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-42486</strong></p>
  <p>Cilium is a networking, observability, and security solution with an eBPF-based dataplane. In versions on the 1.15.x branch prior to 1.15.8 and the 1.16.x branch prior to 1.16.1, ReferenceGrant changes are not correctly propagated in Cilium's GatewayAPI controller, which could lead to Gateway resources being able to access secrets for longer than intended, or to Routes having the ability to forwa…</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-42486">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
