runc是一款用于根据OCI规范生成和运行容器的CLI(命令行界面)工具。 runc 1.1.12之前版本存在安全漏洞,该漏洞源于fds 内部泄漏,导致多个容器发生泄漏。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| opencontainers | runc | >=v1.0.0-rc93, < 1.1.12 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| opencontainers | runc | >=v1.0.0-rc93, < 1.1.12 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/Wall1e/CVE-2024-21626-POC | POC Details |
| 2 | PoC and Detection for CVE-2024-21626 | https://github.com/NitroCao/CVE-2024-21626 | POC Details |
| 3 | None | https://github.com/zpxlz/CVE-2024-21626-POC | POC Details |
| 4 | CVE-2024-21626-poc-research-Reappearance-andtodo | https://github.com/cdxiaodong/CVE-2024-21626 | POC Details |
| 5 | None | https://github.com/zhangguanzhang/CVE-2024-21626 | POC Details |
| 6 | Container Runtime Meetup #5 のLT用のデモ | https://github.com/laysakura/CVE-2024-21626-demo | POC Details |
| 7 | None | https://github.com/V0WKeep3r/CVE-2024-21626-runcPOC | POC Details |
| 8 | None | https://github.com/abian2/CVE-2024-21626 | POC Details |
| 9 | None | https://github.com/Sk3pper/CVE-2024-21626 | POC Details |
| 10 | POC | https://github.com/KubernetesBachelor/CVE-2024-21626 | POC Details |
| 11 | None | https://github.com/dorser/cve-2024-21626 | POC Details |
| 12 | None | https://github.com/FlojBoj/CVE-2024-21626 | POC Details |
| 13 | None | https://github.com/Sk3pper/CVE-2024-21626-old-docker-versions | POC Details |
| 14 | Some scripts to simulate an attack (used for CVE-2024-21626) | https://github.com/adaammmeeee/little-joke | POC Details |
| 15 | Root cuase & Proof of cause | https://github.com/R4mbb/CVE-2024-21626-PoC | POC Details |
| 16 | POCs and Tetragon Rules for CVE-2024-21626 and CVE-2025-31133 | https://github.com/scherepiuk/container-escape-ebpf | POC Details |
No comments yet