Lucene search

K
osvGoogleOSV:GHSA-G44J-7VP3-68CV
HistoryFeb 15, 2022 - 1:57 a.m.

Arbitrary File Write in Libcontainer

2022-02-1501:57:18
Google
osv.dev
4

0.0004 Low

EPSS

Percentile

5.1%

Libcontainer 1.6.0, as used in Docker Engine, allows local users to escape containerization (“mount namespace breakout”) and write to arbitrary file on the host system via a symlink attack in an image when respawning a container.