Database/Container, Kubernetes & orchestration
Cilium: Incorrect default permissions on Cilium-managed host paths allow privilege escalation
CVSS 8.8CVE-2022-29178Container, Kubernetes & orchestrationcurated
Impact
Incorrect default permissions on Cilium-managed host paths allow privilege escalation
Who can reach it
Any tenant workload on the node
What to do
Rolling Cilium agent DaemonSet upgrade; brief per-node dataplane interruption but no GPU pod eviction
References
Related entries
- Cilium: IPsec transparent encryption is cryptographically ineffectiveCVE-2024-28860 · CiliumHigh
- Cilium: cilium-bugtool output contains sensitive dataCVE-2024-37307 · CiliumHigh
- Cilium: cilium-bugtool leaks sensitive data (recurrence of the 2024 issue)CVE-2026-41520 · CiliumHigh
- Cilium: An attacker able to update pod labels causes Cilium to apply the wrong network policyCVE-2023-39347 · CiliumHigh
- Cilium: After a container escape, an attacker can install eBPF programs and take over the node dataplaneCVE-2022-29179 · CiliumHigh
- Cilium: Debug mode logs the contents of the cilium-secrets namespace, including TLS private keysCVE-2023-29002 · CiliumHigh
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.