Vulnerability record · CVE-2023-27594 · published 17 March 2023
CVE-2023-27594: Cilium improper authorization vulnerability
Cilium · Cilium
Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.11.15, 1.12.8, and 1.13.1, under specific conditions, Cilium may misattribute the source IP address of traffic to a cluster, identifying external traffic as coming from the host on which Cilium is running. As a consequence, network policies for that cluster might be bypassed, depending on the specific network policies enabled. This issue only manifests when Cilium is routing IPv6 traffic and NodePorts are used to route traffic to pods. IPv6 and endpoint routes are both disabled by default. The problem has been fixed and is available on versions 1.11.15, 1.12.8, and 1.13.1. As a workaround, disable IPv6 routing.
Description
Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.11.15, 1.12.8, and 1.13.1, under specific conditions, Cilium may misattribute the source IP address of traffic to a cluster, identifying external traffic as coming from the host on which Cilium is running. As a consequence, network policies for that cluster might be bypassed, depending on the specific network policies enabled. This issue only manifests when Cilium is routing IPv6 traffic and NodePorts are used to route traffic to pods. IPv6 and endpoint routes are both disabled by default. The problem has been fixed and is available on versions 1.11.15, 1.12.8, and 1.13.1. As a workaround, disable IPv6 routing.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://github.com/cilium/cilium/releases/tag/v1.11.15 | Third Party Advisory |
| https://github.com/cilium/cilium/releases/tag/v1.12.8 | Third Party Advisory |
| https://github.com/cilium/cilium/releases/tag/v1.13.1 | Third Party Advisory |
| https://github.com/cilium/cilium/security/advisories/GHSA-8fg8-jh2h-f2hc | Third Party Advisory |
| https://github.com/cilium/cilium/releases/tag/v1.11.15 | Third Party Advisory |
| https://github.com/cilium/cilium/releases/tag/v1.12.8 | Third Party Advisory |
| https://github.com/cilium/cilium/releases/tag/v1.13.1 | Third Party Advisory |
| https://github.com/cilium/cilium/security/advisories/GHSA-8fg8-jh2h-f2hc | Third Party Advisory |
Track CVE-2023-27594 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2023-27594), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.