SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-53717

MEDIUM · CVSS 6.5 EPSS 0.71% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Envoy Gateway versions prior to 1.7.4 and 1.8.1 are vulnerable due to improper handling of tenant-controlled image URLs, which can lead to a denial of service (DoS) by causing the Go runtime to exhaust memory through unvalidated tar-header sizes. This vulnerability allows an attacker to exploit the system by selecting malicious registries, resulting in repeated crash-loops of the shared controller and impacting the cluster's control plane. Organizations using Docker or Kubernetes with affected Envoy Gateway versions should prioritize upgrading to the patched versions to mitigate this risk.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-53717
Severity
MEDIUM
CVSS
6.5
EPSS
0.71%
Docker Kubernetes

Original NVD Description

Envoy Gateway is an open source project for managing Envoy Proxy as a standalone or Kubernetes-based application gateway. Prior to 1.7.4 and 1.8.1, internal/wasm/imagefetcher.go follows tenant-controlled EnvoyExtensionPolicy spec.wasm[].code.image.url values to Docker or OCI Wasm layers, and extractWasmPluginBinary uses the untrusted tar-header h.Size value to allocate memory before validating the entry name or declared size. A small PAX or GNU tar header can therefore claim a multi-terabyte entry even though the surrounding LimitReader restricts only the bytes read from the stream, and no registry allowlist prevents a permitted tenant from selecting an attacker-controlled registry that the controller can reach. The allocation is attempted for every tar entry and can cause an unrecoverable Go runtime out-of-memory failure; because the custom resource persists, reconciliation repeatedly crash-loops the shared controller and causes a single-request, non-volumetric, cluster-wide control-plane denial of service. This issue is fixed in versions 1.7.4 and 1.8.1.