CVE-2024-33522
In vulnerable versions of Calico (v3.27.2 and below), Calico Enterprise (v3.19.0-1, v3.18.1, v3.17.3 and below), and Calico Cloud (v19.2.0 and below), an attacker who has local access to the Kubernetes node, can escalate their privileges by exploiting a vulnerability in the Calico CNI install binary. The issue arises from an incorrect SUID (Set User ID) bit configuration in the binary, combined with the ability to control the input binary, allowing an attacker to execute an arbitrary binary with elevated privileges.
Published:Apr 29, 2024
Last Modified:Apr 15, 2026
EPS:Apr 29, 2024
EPSS Score:0.00054
CVSS Score:6.7
Affected Products
Vendor
Product
Action
Vendor
Tigera
Product
Calico
Tigera
Calico
Vendor
Tigera
Product
Calico Cloud
Tigera
Calico Cloud
Vendor
Tigera
Product
Calico Enterprise
Tigera
Calico Enterprise
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
