Denial of Service Vulnerability in Cilium Networking Solution
CVE-2025-23028
What is CVE-2025-23028?
In Kubernetes clusters utilizing Cilium for DNS traffic proxying, a crafted DNS response from an external source can lead to the crashing of Cilium agents. This vulnerability affects versions 1.14.0 through 1.14.7, 1.15.0 through 1.15.11, and 1.16.0 through 1.16.4. While existing connections may remain active, new connections that depend on DNS resolution can be interrupted, causing disruptions in communication. Configuration changes cannot be applied until the affected agent restarts. Upgraded versions 1.14.18, 1.15.12, and 1.16.5 address this issue.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
cilium >= 1.14.0, < 1.14.18 < 1.14.0, 1.14.18
cilium >= 1.15.0, < 1.15.12 < 1.15.0, 1.15.12
cilium >= 1.16.0, < 1.16.5 < 1.16.0, 1.16.5
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
