Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-10145

Опубликовано: 03 июн. 2019
Источник: nvd
CVSS3: 7
CVSS3: 7.7
CVSS2: 6.9
EPSS Низкий

Описание

rkt through version 1.30.0 does not isolate processes in containers that are run with rkt enter. Processes run with rkt enter do not have seccomp filtering during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:rkt:*:*:*:*:*:*:*:*
Версия до 1.30.0 (включая)

EPSS

Процентиль: 11%
0.00037
Низкий

7 High

CVSS3

7.7 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-250
CWE-862

Связанные уязвимости

CVSS3: 7.7
ubuntu
больше 6 лет назад

rkt through version 1.30.0 does not isolate processes in containers that are run with `rkt enter`. Processes run with `rkt enter` do not have seccomp filtering during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

CVSS3: 7.7
debian
больше 6 лет назад

rkt through version 1.30.0 does not isolate processes in containers th ...

CVSS3: 7.7
github
больше 3 лет назад

rkt through version 1.30.0 does not isolate processes in containers that are run with `rkt enter`. Processes run with `rkt enter` do not have seccomp filtering during stage 2 (the actual environment in which the applications run). Compromised containers could exploit this flaw to access host resources.

EPSS

Процентиль: 11%
0.00037
Низкий

7 High

CVSS3

7.7 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-250
CWE-862