Описание
A flaw was found in Kata Containers, affecting both its Rust and Go runtimes. An authenticated pod user can exploit this by setting the io.katacontainers.config_path annotation to an arbitrary configuration file on the host. This allows the attacker to control privileged runtime settings, leading to the execution of malicious binaries as root on the host system. The primary consequence is arbitrary code execution with elevated privileges.
Отчет
This is an Important flaw in Kata Containers that allows an authenticated pod user to achieve arbitrary code execution as root on the host. By manipulating the io.katacontainers.config_path annotation, an attacker can point to a malicious configuration file, leading to a critical bypass of container isolation and privilege escalation within OpenShift Container Platform deployments.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Confidential Compute Attestation | openshift-sandboxed-containers/osc-monitor-rhel9 | Affected | ||
| Red Hat OpenShift Container Platform 4 | kata-containers | Affected |
Показывать по
Дополнительная информация
Статус:
8.8 High
CVSS3
8.8 High
CVSS3