Istio 1.27.5 is a patch release that addresses a moderate-severity security vulnerability (CVE-2025-62408) in the c-ares DNS library that could allow attackers controlling local DNS infrastructure to crash Envoy through a heap use-after-free exploit. The release also fixes a bug in DNS name table creation for headless services

1m read time From istio.io
Post cover image
Table of contents
Security UpdateChanges

Sort: