Database/Container, Kubernetes & orchestration
netavark: container name resolution falls through to host search domains and reaches external servers
Impact
netavark stopped adding the dns.podman search domain, so a container resolving its own name (or a sibling's) now walks the host's /etc/resolv.conf search list. If any configured search domain holds a matching A/AAAA record, traffic a workload intended for a peer container on the same node is answered by an external server and leaves the box. On a shared GPU node where pod and container names come from tenant-supplied job names, that is a way to steer intra-job traffic - and whatever it carries - off the node. Impact is confidentiality-only and requires the attacker to already control a record under a search domain the node trusts.
Who can reach it
No authentication to the node is needed: an attacker only needs a record published under a search domain present in the host's resolv.conf, plus knowledge or influence over a container name. Any tenant who can choose the container/pod name can help the collision along.
What to do
Update netavark to 1.15.1 or later, or apply the Red Hat errata for RHEL 8/9/10 and OpenShift Container Platform 4. Existing containers keep the network configuration they were created with, so recreate running containers after the package update; no node reboot is required.
References
Related entries
- cosign / sigstore: Expired issuing certificate treated as valid during verificationCVE-2026-24122 · cosign / sigstoreLow
- runc: runc can be tricked into creating empty files/directories at arbitrary host locationsCVE-2024-45310 · runcLow
- ECK operator: credentials survive an RBAC-denied cross-namespace association, keeping tenant read accessCVE-2026-78600 · Elastic Cloud on Kubernetes operator (cross-namespace association credentials)Low
- Kubernetes (kubelet): Pods with an empty localhost seccomp profile field silently bypass seccomp enforcementCVE-2023-2431 · Kubernetes (kubelet)Low
- cosign / sigstore: Cosign can be tricked into claiming a Rekor transparency-log entry exists when it does notCVE-2022-23649 · cosign / sigstoreLow
- Docker / moby: Related firewalld handling defect affecting Moby port exposureCVE-2025-54410 · Docker / mobyLow
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.