Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-20199

Опубликовано: 02 фев. 2021
Источник: nvd
CVSS3: 5.9
CVSS2: 4.3
EPSS Низкий

Описание

Rootless containers run with Podman, receive all traffic with a source IP address of 127.0.0.1 (including from remote hosts). This impacts containerized applications that trust localhost (127.0.01) connections by default and do not require authentication. This issue affects Podman 1.8.0 onwards.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:podman_project:podman:*:*:*:*:*:*:*:*
Версия от 1.8.0 (включая) до 3.0.0 (исключая)

EPSS

Процентиль: 70%
0.00638
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-346

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 5 лет назад

Rootless containers run with Podman, receive all traffic with a source IP address of 127.0.0.1 (including from remote hosts). This impacts containerized applications that trust localhost (127.0.01) connections by default and do not require authentication. This issue affects Podman 1.8.0 onwards.

CVSS3: 5.9
redhat
около 5 лет назад

Rootless containers run with Podman, receive all traffic with a source IP address of 127.0.0.1 (including from remote hosts). This impacts containerized applications that trust localhost (127.0.01) connections by default and do not require authentication. This issue affects Podman 1.8.0 onwards.

CVSS3: 5.9
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 5.9
debian
около 5 лет назад

Rootless containers run with Podman, receive all traffic with a source ...

CVSS3: 5.9
github
больше 4 лет назад

Podman Origin Validation Error

EPSS

Процентиль: 70%
0.00638
Низкий

5.9 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-346