CVE-2026-13622

Summary

A symlink following vulnerability was found in KubeVirt's virt-handler migration proxy. During live migration, virt-handler dials Unix sockets inside the target virt-launcher pod via /proc/<pid>/root/ paths using net.Dial() without symlink protection. These socket paths reside in qemu-owned directories writable by the virt-launcher user. An attacker with namespace edit and pods/exec permissions can replace a migration proxy socket with a symlink to the host CRI-O socket. Because virt-handler runs as root in the host mount namespace, absolute symlink targets resolve against the host filesystem, and the bidirectional io.Copy proxy relays attacker-controlled bytes to the container runtime, enabling full node compromise.

Affected Software

VendorProductVersion RangeStatus
Red HatRed Hat Container Native Virtualization 4.121785837722 < *unaffected
Red HatRed Hat Container Native Virtualization 4.131786346596 < *unaffected
Red HatRed Hat Container Native Virtualization 4.141786309624 < *unaffected
Red HatRed Hat Container Native Virtualization 4.151786347656 < *unaffected
Red HatRed Hat Container Native Virtualization 4.161786030071 < *unaffected
Red HatRed Hat Container Native Virtualization 4.171786348529 < *unaffected
Red HatRed Hat Container Native Virtualization 4.181786130068 < *unaffected
Red HatRed Hat Container Native Virtualization 4.191786334215 < *unaffected
Red HatRed Hat Container Native Virtualization 4.201785831334 < *unaffected
Red HatRed Hat Container Native Virtualization 4.211785829701 < *unaffected
Red HatRed Hat Container Native Virtualization 4.221785140336 < *unaffected

Weaknesses

  • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Workarounds

Restrict pods/exec permissions in namespaces that run virtual machines. The pods/exec RBAC permission is required for the attack — removing it from VM operator roles prevents exploitation.

Additionally, enable Kubernetes audit logging and monitor for kubectl exec commands targeting virt-launcher pods, especially during live migration events.

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References