Site icon 지락문화예술공작단

USN-5311-2: containerd regression

USN-5311-2: containerd regression

USN-5311-1 released updates for contained. Unfortunately, a subsequent update
reverted the fix for this CVE by mistake. This update corrects the problem.

We apologize for the inconvenience.

Original advisory details:

It was discovered that containerd allows attackers to gain access to read-
only copies of arbitrary files and directories on the host via a specially-
crafted image configuration. An attacker could possibly use this issue to
obtain sensitive information.
Source: USN-5311-2: containerd regression

Exit mobile version