Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g2j6-57v7-gm8c

Опубликовано: 30 мар. 2023
Источник: github
Github: Прошло ревью
CVSS3: 6.1

Описание

runc AppArmor bypass with symlinked /proc

Impact

It was found that AppArmor, and potentially SELinux, can be bypassed when /proc inside the container is symlinked with a specific mount configuration.

Patches

Fixed in runc v1.1.5, by prohibiting symlinked /proc: https://github.com/opencontainers/runc/pull/3785

This PR fixes CVE-2023-27561 as well.

Workarounds

Avoid using an untrusted container image.

Пакеты

Наименование

github.com/opencontainers/runc

go
Затронутые версииВерсия исправления

< 1.1.5

1.1.5

EPSS

Процентиль: 1%
0.00011
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-281
CWE-59

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 2 лет назад

runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor can be bypassed when `/proc` inside the container is symlinked with a specific mount configuration. This issue has been fixed in runc version 1.1.5, by prohibiting symlinked `/proc`. See PR #3785 for details. users are advised to upgrade. Users unable to upgrade should avoid using an untrusted container image.

CVSS3: 7.8
redhat
больше 2 лет назад

runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor can be bypassed when `/proc` inside the container is symlinked with a specific mount configuration. This issue has been fixed in runc version 1.1.5, by prohibiting symlinked `/proc`. See PR #3785 for details. users are advised to upgrade. Users unable to upgrade should avoid using an untrusted container image.

CVSS3: 6.1
nvd
больше 2 лет назад

runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor can be bypassed when `/proc` inside the container is symlinked with a specific mount configuration. This issue has been fixed in runc version 1.1.5, by prohibiting symlinked `/proc`. See PR #3785 for details. users are advised to upgrade. Users unable to upgrade should avoid using an untrusted container image.

CVSS3: 7.8
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 6.1
debian
больше 2 лет назад

runc is a CLI tool for spawning and running containers according to th ...

EPSS

Процентиль: 1%
0.00011
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-281
CWE-59