Lucene search

K
osvGoogleOSV:USN-5012-1
HistoryJul 20, 2021 - 10:56 a.m.

containerd vulnerabilities

2021-07-2010:56:18
Google
osv.dev
13
containerd
file permission
remote attacker
privilege escalation

AI Score

6.8

Confidence

Low

EPSS

0.001

Percentile

50.9%

It was discovered that containerd incorrectly handled file permission
changes. If a user or automated system were tricked into launching a
specially crafted container image, a remote attacker could change
permissions on files on the host filesystem and possibly escalate
privileges.