Lucene search

K
redhatcveRedhat.comRH:CVE-2019-5736
HistoryJan 11, 2020 - 9:33 a.m.

CVE-2019-5736

2020-01-1109:33:43
redhat.com
access.redhat.com
18

0.004 Low

EPSS

Percentile

73.6%

A flaw was found in the way runc handled system file descriptors when running containers. A malicious container could use this flaw to overwrite contents of the runc binary and consequently run arbitrary commands on the container host system.

Mitigation

This vulnerability is mitigated on Red Hat Enterprise Linux 7 if SELinux is in enforcing mode. SELinux in enforcing mode is a pre-requisite for OpenShift Container Platform 3.x.