CVE-2026-25804

Severity CVSS v4.0:
HIGH
Type:
CWE-287 Authentication Issues
Publication date:
06/02/2026
Last modified:
06/02/2026

Description

Antrea is a Kubernetes networking solution intended to be Kubernetes native. Prior to versions 2.3.2 and 2.4.3, Antrea's network policy priority assignment system has a uint16 arithmetic overflow bug that causes incorrect OpenFlow priority calculations when handling a large numbers of policies with various priority values. This results in potentially incorrect traffic enforcement. This issue has been patched in versions 2.4.3.