Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39898
HistoryMar 22, 2023 - 3:10 a.m.

Network Policy Bypass

2023-03-2203:10:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
network policy bypass
cilium library
ip address misattribution
remote attacker
ipv6 routing
nodeports
security vulnerability

0.001 Low

EPSS

Percentile

45.0%

github.com/cilium/cilium is vulnerable to Network Policy Bypass. The library may misattribute the source IP address of traffic to a cluster, identifying external traffic as coming from the host, which allows a remote attacker to bypass network policies when IPv6 routing is enabled and NodePorts are used to route traffic to pods.

0.001 Low

EPSS

Percentile

45.0%

Related for VERACODE:39898