Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
util.c in runV 1.0.0 for Docker mishandles a numeric username, which allows attackers to obtain root access by leveraging the presence of an initial numeric value on an /etc/passwd line, and then issuing a "docker exec" command with that value in the -u argument, a similar issue to CVE-2016-3697.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
runV for Docker 安全漏洞
Vulnerability Description
runV for Docker是一款OCI的应用于Docker容器中的基于虚拟化技术的容器运行时引擎。 runV for Docker 1.0.0版本中的util.c文件存在安全漏洞,该漏洞源于程序没有正确的处理带有数字的用户名。攻击者可利用该漏洞获取root访问权限。
CVSS Information
N/A
Vulnerability Type
N/A