Количество 5
Количество 5
CVE-2026-88265
(A flaw was found in crun. After pivot_root, reopening /dev/null for st ...)
CVE-2026-88265
A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default configurations that mount a fresh /dev are not exposed. No fixed release is available yet.
CVE-2026-88265
A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default configurations that mount a fresh /dev are not exposed. No fixed release is available yet.
CVE-2026-88265
A flaw was found in crun. After pivot_root, reopening /dev/null for st ...
GHSA-cwhr-hwj2-cjrp
A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default configurations that mount a fresh /dev are not exposed. No fixed release is available yet.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-88265 (A flaw was found in crun. After pivot_root, reopening /dev/null for st ...) | CVSS3: 5.6 | 0% Низкий | 5 дней назад | |
CVE-2026-88265 A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default configurations that mount a fresh /dev are not exposed. No fixed release is available yet. | CVSS3: 5.6 | 0% Низкий | 7 дней назад | |
CVE-2026-88265 A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default configurations that mount a fresh /dev are not exposed. No fixed release is available yet. | CVSS3: 5.6 | 0% Низкий | 6 дней назад | |
CVE-2026-88265 A flaw was found in crun. After pivot_root, reopening /dev/null for st ... | CVSS3: 5.6 | 0% Низкий | 6 дней назад | |
GHSA-cwhr-hwj2-cjrp A flaw was found in crun. After pivot_root, reopening /dev/null for stdio can follow a symlink and attach a host file to container stdio, then change that file's ownership. Affected versions are crun 1.29.1 and earlier. Default configurations that mount a fresh /dev are not exposed. No fixed release is available yet. | CVSS3: 5.6 | 0% Низкий | 6 дней назад |
Уязвимостей на страницу