Cilium with misconfigured toGroups in policies can lead to unrestricted egress traffic (CVE-2025-64715)
### Impact `CiliumNetworkPolicy`s which use `egress.toGroups.aws.securityGroupsIds` to reference AWS security group IDs that do not exist or are not attached to any network interface may unintentionally allow broader outbound access than intended by the policy authors. In such cases, the toCIDRset section of the derived policy is not generated, which means outbound traffic may be permitted to more destinations than originally intended. ### Patches This issue has been patched in: * Cilium v1.18.4 * Cilium v1.17.10 * Cilium v1.16.17 ### This issue affects: - Cilium v1.18 between v1.18.0 and v1.18.3 inclusive - Cilium v1.17 between v1.17.0 and v1.17.9 inclusive - Cilium v1.16.16 and below ### Workarounds There is no workaround to this issue. ### Acknowledgements The Cilium community has worked together with members of Isovalent to prepare these mitigations. Special thanks to @SeanEmac for reporting this issue and to @fristonio for the patch. ### For more information If you think you have found a vulnerability affecting Cilium, we strongly encourage you to report it to our security mailing list at [[email protected]](mailto:[email protected]). This is a private mailing list for the Cilium security team, and your report will be treated as top priority.
AI Analysis
Technical Summary
The vulnerability in CiliumNetworkPolicy arises when egress policies use toGroups.aws.securityGroupsIds referencing AWS security group IDs that either do not exist or are not attached to any network interface. In such cases, the derived policy fails to generate the toCIDRset section, resulting in potentially unrestricted outbound traffic beyond what the policy author intended. This issue affects Cilium versions >=1.18.0 <1.18.4, >=1.17.0 <1.17.10, and all versions below 1.16.17. Official patches have been released in versions 1.18.4, 1.17.10, and 1.16.17 to fix this behavior.
Potential Impact
The vulnerability can lead to unintended broader outbound network access due to missing toCIDRset entries in the egress policy, potentially allowing traffic to destinations not authorized by the original policy. This undermines the intended network segmentation and security controls enforced by CiliumNetworkPolicy egress rules. There is no indication of impact on confidentiality, integrity, or availability beyond the broader egress access.
Mitigation Recommendations
This vulnerability is officially patched in Cilium versions 1.18.4, 1.17.10, and 1.16.17. Users should upgrade to these or later versions to remediate the issue. There are no available workarounds. Review and correct any egress policies referencing AWS security group IDs to ensure they reference valid and attached security groups.
Cilium with misconfigured toGroups in policies can lead to unrestricted egress traffic (CVE-2025-64715)
Description
### Impact `CiliumNetworkPolicy`s which use `egress.toGroups.aws.securityGroupsIds` to reference AWS security group IDs that do not exist or are not attached to any network interface may unintentionally allow broader outbound access than intended by the policy authors. In such cases, the toCIDRset section of the derived policy is not generated, which means outbound traffic may be permitted to more destinations than originally intended. ### Patches This issue has been patched in: * Cilium v1.18.4 * Cilium v1.17.10 * Cilium v1.16.17 ### This issue affects: - Cilium v1.18 between v1.18.0 and v1.18.3 inclusive - Cilium v1.17 between v1.17.0 and v1.17.9 inclusive - Cilium v1.16.16 and below ### Workarounds There is no workaround to this issue. ### Acknowledgements The Cilium community has worked together with members of Isovalent to prepare these mitigations. Special thanks to @SeanEmac for reporting this issue and to @fristonio for the patch. ### For more information If you think you have found a vulnerability affecting Cilium, we strongly encourage you to report it to our security mailing list at [[email protected]](mailto:[email protected]). This is a private mailing list for the Cilium security team, and your report will be treated as top priority.
CVSS v3.1
Score 4.0medium
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The vulnerability in CiliumNetworkPolicy arises when egress policies use toGroups.aws.securityGroupsIds referencing AWS security group IDs that either do not exist or are not attached to any network interface. In such cases, the derived policy fails to generate the toCIDRset section, resulting in potentially unrestricted outbound traffic beyond what the policy author intended. This issue affects Cilium versions >=1.18.0 <1.18.4, >=1.17.0 <1.17.10, and all versions below 1.16.17. Official patches have been released in versions 1.18.4, 1.17.10, and 1.16.17 to fix this behavior.
Potential Impact
The vulnerability can lead to unintended broader outbound network access due to missing toCIDRset entries in the egress policy, potentially allowing traffic to destinations not authorized by the original policy. This undermines the intended network segmentation and security controls enforced by CiliumNetworkPolicy egress rules. There is no indication of impact on confidentiality, integrity, or availability beyond the broader egress access.
Mitigation Recommendations
This vulnerability is officially patched in Cilium versions 1.18.4, 1.17.10, and 1.16.17. Users should upgrade to these or later versions to remediate the issue. There are no available workarounds. Review and correct any egress policies referencing AWS security group IDs to ensure they reference valid and attached security groups.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-38pp-6gcp-rqvm
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2025-64715"]
- Ecosystems
- ["Go"]
- Database Specific Severity
- MODERATE
- Cvss Version
- 3.1
Threat ID: 6a46ecb327e9c7971943c61c
Added to database: 07/02/2026, 22:56:51 UTC
Last enriched: 07/02/2026, 23:08:39 UTC
Last updated: 09/10/2026, 19:36:51 UTC
Views: 17
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.