Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2024-9341

Опубликовано: 03 сент. 2025
Источник: msrc
CVSS3: 5.4
EPSS Низкий

Описание

Podman: buildah: cri-o: fips crypto-policy directory mounting issue in containers/common go library

EPSS

Процентиль: 63%
0.00457
Низкий

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
ubuntu
около 1 года назад

A flaw was found in Go. When FIPS mode is enabled on a system, container runtimes may incorrectly handle certain file paths due to improper validation in the containers/common Go library. This flaw allows an attacker to exploit symbolic links and trick the system into mounting sensitive host directories inside a container. This issue also allows attackers to access critical host files, bypassing the intended isolation between containers and the host system.

CVSS3: 5.4
redhat
около 1 года назад

A flaw was found in Go. When FIPS mode is enabled on a system, container runtimes may incorrectly handle certain file paths due to improper validation in the containers/common Go library. This flaw allows an attacker to exploit symbolic links and trick the system into mounting sensitive host directories inside a container. This issue also allows attackers to access critical host files, bypassing the intended isolation between containers and the host system.

CVSS3: 5.4
nvd
около 1 года назад

A flaw was found in Go. When FIPS mode is enabled on a system, container runtimes may incorrectly handle certain file paths due to improper validation in the containers/common Go library. This flaw allows an attacker to exploit symbolic links and trick the system into mounting sensitive host directories inside a container. This issue also allows attackers to access critical host files, bypassing the intended isolation between containers and the host system.

CVSS3: 5.4
debian
около 1 года назад

A flaw was found in Go. When FIPS mode is enabled on a system, contain ...

CVSS3: 5.4
redos
12 месяцев назад

Уязвимость containers-common

EPSS

Процентиль: 63%
0.00457
Низкий

5.4 Medium

CVSS3