CVE-2025-7195
Last modified
CVE-2025-7195 is a medium-severity vulnerability rated 6.4/10 on the CVSS scale. Early versions of Operator-SDK provided an insecure method to allow operator containers to run in environments that used a random UID. Operator-SDK before 0.15.2 provided a script, user_setup, which modifies the permissions of the /etc/passwd file to 664 during build time. EPSS estimates a 0.22% chance of exploitation in the next 30 days.
Description
Early versions of Operator-SDK provided an insecure method to allow operator containers to run in environments that used a random UID. Operator-SDK before 0.15.2 provided a script, user_setup, which modifies the permissions of the /etc/passwd file to 664 during build time. Developers who used Operator-SDK before 0.15.2 to scaffold their operator may still be impacted by this if the insecure user_setup script is still being used to build new container images. In affected images, the /etc/passwd file is created during build time with group-writable permissions and a group ownership of root (gid=0). An attacker who can execute commands within an affected container, even as a non-root user, may be able to leverage their membership in the root group to modify the /etc/passwd file. This could allow the attacker to add a new user with any arbitrary UID, including UID 0, leading to full root privileges within the container.
Metrics
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-7195?
How severe is CVE-2025-7195?
How do I fix CVE-2025-7195?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2025
- CVE-2025-7189A vulnerability, which was classified as critical, has been …8.8
- CVE-2025-7190A vulnerability, which was classified as critical, was found…8.8
- CVE-2025-7191A vulnerability has been found in code-projects Student Enro…9.8
- CVE-2025-7192A vulnerability was found in D-Link DIR-645 up to 1.05B01 an…8.8
- CVE-2025-7193A vulnerability was found in itsourcecode Agri-Trading Onlin…9.8
- CVE-2025-7194A vulnerability was found in D-Link DI-500WF 17.04.10A1T. It…8.8
- CVE-2025-7196A vulnerability was found in code-projects Jonnys Liquor 1.0…9.8
- CVE-2025-7197A vulnerability classified as critical has been found in cod…9.8
- CVE-2025-7198A vulnerability classified as critical was found in code-pro…9.8
- CVE-2025-7199A vulnerability, which was classified as critical, has been …9.8
- CVE-2025-7200A vulnerability, which was classified as critical, was found…9.8
- CVE-2025-7202A Cross-Site Request Forgery (CSRF) in Elgato's Key Lights a…5.1
Are you affected by CVE-2025-7195?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
