Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:33194
HistoryDec 07, 2021 - 12:10 p.m.

Integer Overflow

2021-12-0712:10:19
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
31

0.008 Low

EPSS

Percentile

81.9%

github.com/opencontainers/runc is vulnerable to integer overflows. The vulnerability exists in container_linux.go due to insecure handling of null bytes in mount sources which allows an attacker to bypass the namespace restrictions of the container by adding their ownNetlink payload which disables all namespaces.