HomeRedhatCVE-2025-8283

CVE-2025-8283

LOW
3.7CVSS
Published: 2025-07-28
Updated: 2025-11-07
AI Analysis

Description

A vulnerability was found in the netavark package, a network stack for containers used with Podman. Due to dns.podman search domain being removed, netavark may return external servers if a valid A/AAAA record is sent as a response. When creating a container with a given name, this name will be used as the hostname for the container itself, as the podman's search domain is not added anymore the container is using the host's resolv.conf, and the DNS resolver will try to look into the search domains contained on it. If one of the domains contain a name with the same hostname as the running container, the connection will forward to unexpected external servers.

CVSS Metrics

Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
network
Complexity
high
Privileges
none
User Action
none
Scope
unchanged
Confidentiality
low
Integrity
none
Availability
none
Weaknesses
CWE-15

Metadata

Primary Vendor
REDHAT
Published
7/28/2025
Last Modified
11/7/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

redhat : openshift_container_platformredhat : enterprise_linuxredhat : enterprise_linuxredhat : enterprise_linux

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2025-8283 | LOW Severity | CVEDatabase.com | CVEDatabase.com