In Buoyant Edge releases before edge-25.2.1 and Enterprise for Linkerd releases 2.16.* before 2.16.5, 2.17.* before 2.17.2, and 2.18.* before 2.18.0, resource exhaustion can occur for Linkerd proxy metrics.
https://www.buoyant.io/resources
https://docs.buoyant.io/security/advisories/2025-01/
Source: Mitre, NVD
Published: 2025-05-05
Updated: 2025-05-05
Base Score: 6.1
Vector: CVSS2#AV:N/AC:H/Au:N/C:N/I:P/A:C
Severity: Medium
Base Score: 6.5
Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
EPSS: 0.0004