CVE-2025-0426

EUVD-2025-1661
A security issue was discovered in Kubernetes where a large number of container checkpoint requests made to the unauthenticated kubelet read-only HTTP endpoint may cause a Node Denial of Service by filling the Node's disk.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.2 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Awaiting analysis
This vulnerability is currently awaiting analysis.
Base Score
CVSS 3.x
EPSS Score
Percentile: 29.41%
Debian logo
Debian Releases
Debian Product
Codename
kubernetes
bookworm
1.20.5+really1.20.2-1.1+deb12u1
fixed
bullseye
1.20.5+really1.20.2-1
fixed
forky
1.33.4+ds-1
fixed
sid
1.33.4+ds-1
fixed
trixie
1.32.3+ds-2
fixed
Azure Linux logo
Azure Linux Releases
Azure Package
Release
kubernetes
Azure Linux 3.0
0:1.30.10-1.azl3
fixed