Lucene search

K
vmwareVMwareVMSA-2019-0001.3
HistoryFeb 15, 2019 - 12:00 a.m.

VMware product updates resolve mishandled file descriptor vulnerability in runc container runtime.

2019-02-1500:00:00
www.vmware.com
22

0.004 Low

EPSS

Percentile

73.6%

VMware product updates resolve mishandled file descriptor vulnerability in runc container runtime. Successful exploitation of this issue may allow a malicious container to overwrite the contents of a host’s runc binary and execute arbitrary code. Exploitation of this vulnerability requires the attacker to have existing permission to deploy containers or run docker exec. Alternatively, an attacker could trick a user with these permissions into deploying a malicious container or running docker exec for them.