GO-2026-6367
Dashboard / Vulnerabilities / GO-2026-6367
GO-2026-6367
Summary: Cilium may unexpectedly allow ingress traffic from the local namespace when a Kubernetes NetworkPolicy is configured with an ipBlock match in github.com/cilium/cilium
Details: Cilium may unexpectedly allow ingress traffic from the local namespace when a Kubernetes NetworkPolicy is configured with an ipBlock match in github.com/cilium/cilium
References: https://github.com/cilium/cilium/security/advisories/GHSA-fm8w-2m5w-9j7r, https://nvd.nist.gov/vuln/detail/CVE-2026-56743, https://github.com/cilium/cilium/commit/1c84ae3b58a7cd54f7ee355e6c524c82f620eae8, https://github.com/cilium/cilium/commit/bacea640404c0805c23515353dc1681c5bf35171, https://github.com/cilium/cilium/pull/46305, https://github.com/cilium/cilium/pull/46456, https://github.com/cilium/cilium/releases/tag/v1.19.5
Affected packages
Package
Name: github.com/cilium/cilium
Purl: pkg:golang/github.com/cilium/cilium
Affected ranges
Type: SEMVER
Events:
