
SUSE released fixes for kubevirt 1.6 and 1.7 addressing CVE-2025-47911, CVE-2025-47913 and CVE-2025-47914 privilege escalation and denial-of-service bugs in embedded Go components, Linuxsecurity reported. https://threatcluster.io/cluster/critical-vulnerabilities-in-suse-kubevirt-and-opensuse-trivy-ce749196
Post summary
The announcement announces that SUSE has released patches for kubevirt versions 1.6 and 1.7 to fix privilege escalation and denial‑of‑service CVEs in embedded Go components.
