Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3076 | IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a network packet, allowing an attacker to spoof and route arbitrary traffic via an exposed network interface. This is a similar issue to CVE-2020-10136. |
Mon, 03 Nov 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 28 May 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Thu, 22 May 2025 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Thu, 13 Feb 2025 01:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 12 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Jan 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ietf
Ietf ipv6 |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:ietf:ipv6:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Ietf
Ietf ipv6 |
Fri, 17 Jan 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | networkmanager: 4in6 and 6in6 protocols excessive trust | |
| Weaknesses | CWE-348 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Tue, 14 Jan 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-940 | |
| Metrics |
cvssV3_1
|
Tue, 14 Jan 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a network packet, allowing an attacker to spoof and route arbitrary traffic via an exposed network interface. This is a similar issue to CVE-2020-10136. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-03T21:00:13.443Z
Reserved: 2025-01-10T00:00:00.000Z
Link: CVE-2025-23018
Updated: 2025-02-12T20:25:59.237Z
Status : Modified
Published: 2025-01-14T20:15:32.440
Modified: 2025-11-03T21:19:14.350
Link: CVE-2025-23018
OpenCVE Enrichment
No data.
EUVD