Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7hwv-gxwq-2g5p

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for the cgroup. An attacker could abuse this flaw to get host network access on an cri-o host.

A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for the cgroup. An attacker could abuse this flaw to get host network access on an cri-o host.

EPSS

Процентиль: 50%
0.00691
Низкий

5 Medium

CVSS3

Дефекты

CWE-460
CWE-754

Связанные уязвимости

CVSS3: 5
ubuntu
почти 7 лет назад

A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for the cgroup. An attacker could abuse this flaw to get host network access on an cri-o host.

CVSS3: 5
redhat
почти 7 лет назад

A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for the cgroup. An attacker could abuse this flaw to get host network access on an cri-o host.

CVSS3: 5
nvd
почти 7 лет назад

A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for the cgroup. An attacker could abuse this flaw to get host network access on an cri-o host.

CVSS3: 5
debian
почти 7 лет назад

A flaw was found in cri-o, as a result of all pod-related processes be ...

EPSS

Процентиль: 50%
0.00691
Низкий

5 Medium

CVSS3

Дефекты

CWE-460
CWE-754