Input Validation Flaw in Hubble CLI from Cilium Affects Network Security Operations
CVE-2025-48056

5.3MEDIUM

Key Information:

Vendor

Cilium

Status
Vendor
CVE Published:
20 May 2025

What is CVE-2025-48056?

A vulnerability exists within Hubble CLI, which can be exploited by network attackers to inject malicious control characters into terminal output. This flaw can compromise log integrity, allowing attackers to conceal important log entries or alter output, potentially leading to a disrupted terminal experience. Exploitation requires the victim to be actively monitoring Kafka traffic using Layer 7 Protocol Visibility during the attack. This issue has been addressed in version 1.17.2 of Hubble CLI. Users unable to upgrade are advised to redirect Hubble flows to a log file for secure output inspection.

Affected Version(s)

hubble < 1.17.2

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.