CVE WATCH / VULNERABILITY DETAIL

CVE-2025-71422

MEDIUMCVSS 5.7NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast is a Kubernetes runtime for confidential containers. In versions before 1.12.1, the secure persistent volume feature is vulnerable to a malicious host supplying a crafted LUKS2 volume to a pod VM. LUKS2 volume metadata is not authenticated and, with cryptsetup versions prior to 2.8.1, a hea

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2025-71422 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2025-71422

MEDIUMCVSS 5.7NVD feed

Published 27 September 2026 · tracked since 27 September 2026

Description

Contrast is a Kubernetes runtime for confidential containers. In versions before 1.12.1, the secure persistent volume feature is vulnerable to a malicious host supplying a crafted LUKS2 volume to a pod VM. LUKS2 volume metadata is not authenticated and, with cryptsetup versions prior to 2.8.1, a hea

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]