CVE-2025-14525
ADVISORY - githubSummary
A flaw was found in KubeVirt. A user within a virtual machine (VM), if the guest agent is active, can exploit this by causing the agent to report an excessive number of network interfaces. This action can overwhelm the system's ability to store VM configuration updates, effectively blocking changes to the Virtual Machine Instance (VMI). This allows the VM user to restrict the VM administrator's ability to manage the VM, leading to a Denial of Dervice for administrative operations.
EPSS Score: 0.00016 (0.038)
Common Weakness Enumeration (CWE)
ADVISORY - nist
Allocation of Resources Without Limits or Throttling
ADVISORY - github
Allocation of Resources Without Limits or Throttling
ADVISORY - redhat
Allocation of Resources Without Limits or Throttling
NIST
CREATED
UPDATED
ADVISORY IDCVE-2025-14525
EXPLOITABILITY SCORE
3.1
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
6.4mediumGitHub
CREATED
UPDATED
ADVISORY IDGHSA-25mh-hp8x-cgrv
EXPLOITABILITY SCORE
3.1
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
6.4mediumGoLang
CREATED
UPDATED
ADVISORY IDGO-2026-4384
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-
Red Hat
CREATED
UPDATED
ADVISORY IDCVE-2025-14525
EXPLOITABILITY SCORE
3.1
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)