Логотип exploitDog
bind:CVE-2025-8283
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-8283

Количество 7

Количество 7

ubuntu логотип

CVE-2025-8283

3 месяца назад

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2025-8283

3 месяца назад

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2025-8283

3 месяца назад

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2025-8283

3 месяца назад

A vulnerability was found in the netavark package, a network stack for ...

CVSS3: 3.7
EPSS: Низкий
redos логотип

ROS-20250829-04

около 2 месяцев назад

Уязвимость netavark

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-rpcf-rmh6-42xr

3 месяца назад

Netavark Has Possible DNS Resolve Confusion

CVSS3: 3.7
EPSS: Низкий
fstec логотип

BDU:2025-10832

3 месяца назад

Уязвимость сетевого стека для управления сетями контейнеров Netavark, связанная с восстановлением измененной резервной копии конфигурации, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-8283

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS3: 3.7
0%
Низкий
3 месяца назад
redhat логотип
CVE-2025-8283

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS3: 3.7
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-8283

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS3: 3.7
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-8283

A vulnerability was found in the netavark package, a network stack for ...

CVSS3: 3.7
0%
Низкий
3 месяца назад
redos логотип
ROS-20250829-04

Уязвимость netavark

CVSS3: 3.7
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-rpcf-rmh6-42xr

Netavark Has Possible DNS Resolve Confusion

CVSS3: 3.7
0%
Низкий
3 месяца назад
fstec логотип
BDU:2025-10832

Уязвимость сетевого стека для управления сетями контейнеров Netavark, связанная с восстановлением измененной резервной копии конфигурации, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 3.7
0%
Низкий
3 месяца назад

Уязвимостей на страницу