Логотип exploitDog
bind:"CVE-2025-47291"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-47291"

Количество 7

Количество 7

ubuntu логотип

CVE-2025-47291

7 месяцев назад

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes limits are not honored. This may cause a denial of service of the Kubernetes node. This bug has been fixed in containerd 2.0.5+ and 2.1.0+. Users should update to these versions to resolve the issue. As a workaround, disable usernamespaced pods in Kubernetes temporarily.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2025-47291

7 месяцев назад

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes limits are not honored. This may cause a denial of service of the Kubernetes node. This bug has been fixed in containerd 2.0.5+ and 2.1.0+. Users should update to these versions to resolve the issue. As a workaround, disable usernamespaced pods in Kubernetes temporarily.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2025-47291

7 месяцев назад

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes limits are not honored. This may cause a denial of service of the Kubernetes node. This bug has been fixed in containerd 2.0.5+ and 2.1.0+. Users should update to these versions to resolve the issue. As a workaround, disable usernamespaced pods in Kubernetes temporarily.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-47291

5 месяцев назад

containerd CRI plugin: Incorrect cgroup hierarchy assignment for containers running in usernamespaced Kubernetes pods.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-47291

7 месяцев назад

containerd is an open-source container runtime. A bug was found in the ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-cxfp-7pvr-95ff

7 месяцев назад

containerd CRI plugin: Incorrect cgroup hierarchy assignment for containers running in usernamespaced Kubernetes pods.

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20117-1

23 дня назад

Security update for trivy

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-47291

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes limits are not honored. This may cause a denial of service of the Kubernetes node. This bug has been fixed in containerd 2.0.5+ and 2.1.0+. Users should update to these versions to resolve the issue. As a workaround, disable usernamespaced pods in Kubernetes temporarily.

CVSS3: 7.5
0%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-47291

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes limits are not honored. This may cause a denial of service of the Kubernetes node. This bug has been fixed in containerd 2.0.5+ and 2.1.0+. Users should update to these versions to resolve the issue. As a workaround, disable usernamespaced pods in Kubernetes temporarily.

CVSS3: 6.3
0%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-47291

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under the Kubernetes' cgroup hierarchy, therefore some Kubernetes limits are not honored. This may cause a denial of service of the Kubernetes node. This bug has been fixed in containerd 2.0.5+ and 2.1.0+. Users should update to these versions to resolve the issue. As a workaround, disable usernamespaced pods in Kubernetes temporarily.

CVSS3: 7.5
0%
Низкий
7 месяцев назад
msrc логотип
CVE-2025-47291

containerd CRI plugin: Incorrect cgroup hierarchy assignment for containers running in usernamespaced Kubernetes pods.

CVSS3: 7.5
0%
Низкий
5 месяцев назад
debian логотип
CVE-2025-47291

containerd is an open-source container runtime. A bug was found in the ...

CVSS3: 7.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-cxfp-7pvr-95ff

containerd CRI plugin: Incorrect cgroup hierarchy assignment for containers running in usernamespaced Kubernetes pods.

0%
Низкий
7 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:20117-1

Security update for trivy

23 дня назад

Уязвимостей на страницу