THREAT OPS › Threat News › [GHSA] GHSA-fm8w-2m5w-9j7r (medium) — Cilium may unexpectedly allow ingress traffic from the local namespace when a Kubernetes NetworkPolicy is configured with an ipBlock match
[GHSA] GHSA-fm8w-2m5w-9j7r (medium) — Cilium may unexpectedly allow ingress traffic from the local namespace when a Kubernetes NetworkPolicy is configured with an ipBlock match
GHSA-fm8w-2m5w-9j7r Severity: medium CVE: CVE-2026-56743
Cilium may unexpectedly allow ingress traffic from the local namespace when a Kubernetes NetworkPolicy is configured with an ipBlock match
### Impact
Standard Kubernetes `NetworkPolicy` specifications using CIDR-based `ipBlock` rules without pod or namespace selectors erroneously generate a wildcard namespace allow rule under specific clu
Indicators of compromise
- CVE-2026-56743cve
- https://docs.cilium.io/en/stable/security/policy/layer3/#ip-cidr-basedurl
- security@cilium.ioemail
- 192.0.2.3ipv4
- networking.k8s.iodomain
Original source: https://github.com/advisories/GHSA-fm8w-2m5w-9j7r