CVE-2025-32793
CVSS 3.1 Score 4 of 10 (medium)
Details
Published Apr 21, 2025
Updated: Apr 23, 2025
CWE ID 319
Summary
CVE-2025-32793 is a vulnerability affecting versions 1.15.0 to 1.17.2 of Cilium, a networking, observability, and security solution. The issue lies in the Wireguard transparent encryption feature used in a Cilium cluster. A race condition in the way Cilium processes traffic allows packets that originate from a terminating endpoint to leave the source node without encryption. This vulnerability has been patched in versions 1.15.16, 1.16.9, and 1.17.3, with no workarounds currently available.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Cilium
Affected Vendors
- Cilium