Vulnerability Description
This CVE only affects Kubernetes clusters that utilize the in-tree gitRepo volume to clone git repositories from other pods within the same node. Since the in-tree gitRepo volume feature has been deprecated and will not receive security updates upstream, any cluster still using this feature remains vulnerable.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/kubernetes/kubernetes/pull/130786
- https://groups.google.com/g/kubernetes-security-announce/c/19irihsKg7s
- http://www.openwall.com/lists/oss-security/2025/03/13/9
FAQ
What is CVE-2025-1767?
CVE-2025-1767 is a vulnerability with a CVSS score of 6.5 (MEDIUM). This CVE only affects Kubernetes clusters that utilize the in-tree gitRepo volume to clone git repositories from other pods within the same node. Since the in-tree gitRepo volume feature has been depr...
How severe is CVE-2025-1767?
CVE-2025-1767 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-1767?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.