We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-1566



Description

DNS Leak in Native System VPN in Google ChromeOS Dev Channel on ChromeOS 16002.23.0 allows network observers to expose plaintext DNS queries via failure to properly tunnel DNS traffic during VPN state transitions.

Reserved 2025-02-21 | Published 2025-04-16 | Updated 2025-05-08 | Assigner ChromeOS

Problem types

Network Security Isolation (NSI)

Product status

16002.23.0 before 16002.23.0
affected

References

issuetracker.google.com/issues/342802975

issues.chromium.org/issues/b/342802975

cve.org (CVE-2025-1566)

nvd.nist.gov (CVE-2025-1566)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-1566

Support options

Helpdesk Chat, Email, Knowledgebase