Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mr55-c2c7-jch7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.7

Описание

rkt through version 1.30.0 does not isolate processes in containers that are run with rkt enter. Processes run with rkt enter are not limited by cgroups during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

rkt through version 1.30.0 does not isolate processes in containers that are run with rkt enter. Processes run with rkt enter are not limited by cgroups during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

EPSS

Процентиль: 12%
0.0004
Низкий

7.7 High

CVSS3

Дефекты

CWE-250
CWE-862

Связанные уязвимости

CVSS3: 7.7
ubuntu
больше 6 лет назад

rkt through version 1.30.0 does not isolate processes in containers that are run with `rkt enter`. Processes run with `rkt enter` are not limited by cgroups during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

CVSS3: 7.7
nvd
больше 6 лет назад

rkt through version 1.30.0 does not isolate processes in containers that are run with `rkt enter`. Processes run with `rkt enter` are not limited by cgroups during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

CVSS3: 7.7
debian
больше 6 лет назад

rkt through version 1.30.0 does not isolate processes in containers th ...

EPSS

Процентиль: 12%
0.0004
Низкий

7.7 High

CVSS3

Дефекты

CWE-250
CWE-862