Improper certificate validation in envoy - CVE-2025-66220
Published: December 3, 2025
envoy
Detailed vulnerability description
The vulnerability allows a remote attacker to impersonate other users.
The vulnerability exists due to incorrect processing of client certificates with an embedded null byte (\0) inside an OTHERNAME SAN value. A remote attacker who can obtain a trusted client certificate can impersonate a matched identity and bypass TLS-based authorization checks.