In Linkerd edge releases before edge-25.2.1, and Buoyant Enterprise for Linkerd releases 2.13.0–2.13.7, 2.14.0–2.14.10, 2.15.0–2.15.7, 2.16.0–2.16.4, and 2.17.0–2.17.1, resource exhaustion can occur for Linkerd proxy metrics.
https://www.buoyant.io/resources
https://docs.buoyant.io/security/advisories/2025-01/
Source: Mitre, NVD
Published: 2025-05-05
Updated: 2025-05-19
Base Score: 6.1
Vector: CVSS2#AV:N/AC:H/Au:N/C:N/I:P/A:C
Severity: Medium
Base Score: 6.5
Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
EPSS: 0.0004