SCA: security update for github.com/cilium/hubble (GHSA-274q-79q9-52j7)

medium Tenable Self-Hosted Container Security Plugin ID 434792

Description

There are packages installed that are affected by a vulnerability referenced in the following CVE:

- Hubble is a fully distributed networking and security observability platform for cloud native workloads.
Prior to version 1.17.2, a network attacker could inject malicious control characters into Hubble CLI
terminal output, potentially leading to loss of integrity and manipulation of the output. This could be
leveraged to conceal log entries, rewrite output, or even make the terminal temporarily unusable.
Exploitation of this attack would require the victim to be monitoring Kafka traffic using Layer 7 Protocol
Visibility at the time of the attack. The issue is patched in Hubble CLI v1.17.2. Hubble CLI users who are
unable to upgrade can direct their Hubble flows to a log file and inspect the output within a text editor.
(CVE-2025-48056)

See Also

https://github.com/advisories/GHSA-274q-79q9-52j7

Plugin Details

Severity: Medium

ID: 434792

Version: Revision 1.5

Type: Local

Family: SCA Checks

Published: 8/20/2025

Updated: 7/2/2026

Supported Sensors: Tenable Cloud Security, Tenable Self-Hosted Container Security

Risk Information

VPR

Risk Factor: Low

Score: 1.2

Percentile: 0.01

Vendor

Vendor Severity: Medium

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N

CVSS Score Source: CVE-2025-48056

CVSS v3

Risk Factor: Medium

Base Score: 5.3

Temporal Score: 4.6

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

Exploit Ease: No known exploits are available

Patch Publication Date: 5/21/2025

Vulnerability Publication Date: 5/20/2025

Reference Information

CVE: CVE-2025-48056

cwe: CWE-74