Recent Advisories

Severity ID Title Vendor Product Date Type
MEDIUM 6.9 MS:CVE-2025-64436

KubeVirt Excessive Role Permissions Could Enable Unauthorized VMI Migrations Between Nodes_MS:CVE-2025-64436

{“lastseen”:”2025-11-10T20:55:31″,”description”:””,”published”:”2025-11-09T01:01:...

N/A N/A MSCVE
MEDIUM 4.7 MS:CVE-2025-64432

KubeVirt Affected by an Authentication Bypass in Kubernetes Aggregation Layer_MS:CVE-2025-64432

{“lastseen”:”2025-11-10T20:55:31″,”description”:””,”published”:”2025-11-09T01:01:...

N/A N/A MSCVE
MEDIUM 4.7 MS:CVE-2025-64434

KubeVirt Improper TLS Certificate Management Handling Allows API Identity Spoofing_MS:CVE-2025-64434

{“lastseen”:”2025-11-10T20:55:31″,”description”:””,”published”:”2025-11-09T01:01:...

N/A N/A MSCVE
MEDIUM 6.5 MS:CVE-2025-64433

KubeVirt Arbitrary Container File Read_MS:CVE-2025-64433

{“lastseen”:”2025-11-10T20:55:31″,”description”:””,”published”:”2025-11-09T01:01:...

N/A N/A MSCVE
MEDIUM 5.3 MS:CVE-2025-64435

KubeVirt VMI Denial-of-Service (DoS) Using Pod Impersonation_MS:CVE-2025-64435

{“lastseen”:”2025-11-10T20:55:30″,”description”:””,”published”:”2025-11-09T01:02:...

N/A N/A MSCVE
MEDIUM 5 MS:CVE-2025-64437

KubeVirt Isolation Detection Flaw Allows Arbitrary File Permission Changes_MS:CVE-2025-64437

{“lastseen”:”2025-11-10T20:55:30″,”description”:””,”published”:”2025-11-09T01:02:...

N/A N/A MSCVE
HIGH 7.3 MS:CVE-2025-31133

runc container escape via “masked path” abuse due to mount race conditions_MS:CVE-2025-31133

{“lastseen”:”2025-11-10T20:55:30″,”description”:””,”published”:”2025-11-09T01:02:...

N/A N/A MSCVE
HIGH 8.4 MS:CVE-2025-52565

container escape due to /dev/console mount and related races_MS:CVE-2025-52565

{“lastseen”:”2025-11-10T20:55:30″,”description”:””,”published”:”2025-11-09T01:02:...

N/A N/A MSCVE
HIGH 7.3 MS:CVE-2025-52881

runc: LSM labels can be bypassed with malicious config using dummy procfs files_MS:CVE-2025-52881

{“lastseen”:”2025-11-10T20:55:30″,”description”:””,”published”:”2025-11-09T01:02:...

N/A N/A MSCVE
NONE MS:CVE-2025-40109

crypto: rng – Ensure set_ent is always present_MS:CVE-2025-40109

{“lastseen”:”2025-11-10T20:55:30″,”description”:””,”published”:”2025-11-10T01:03:...

N/A N/A MSCVE