Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers started incorrectly with non-empty inheritable Linux process capabilities. This flaw allows an attacker with access to programs with inheritable file capabilities to elevate those capabilities to the permitted set when execve(2) runs.
CVSS Information
N/A
Vulnerability Type
缺省权限不正确
Vulnerability Title
cri-o 安全漏洞
Vulnerability Description
cri-o是一款用于Kubernetes系统的轻量级容器运行时环境。 cri-o 存在安全漏洞,该漏洞源于软件使用非空默认权限错误地启动了容器。访问具有可继承文件功能的程序的攻击者利用该漏洞进行权限提升。
CVSS Information
N/A
Vulnerability Type
N/A