Lucene search

K
cvelistMitreCVELIST:CVE-2016-9962
HistoryJan 31, 2017 - 10:00 p.m.

CVE-2016-9962

2017-01-3122:00:00
mitre
www.cve.org

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.8%

RunC allowed additional container processes via ‘runc exec’ to be ptraced by the pid 1 of the container. This allows the main processes of the container, if running as root, to gain access to file-descriptors of these new processes during the initialization and can lead to container escapes or modification of runC state before the process is fully placed inside the container.

References