Security Advisory

CVE-2022-1227

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-29 15:45:00
Last updated 2024-08-02 23:55:24
Assigner redhat
State PUBLISHED

Description

A privilege escalation flaw was found in Podman. This flaw allows an attacker to publish a malicious image to a public registry. Once this image is downloaded by a potential victim, the vulnerability is triggered after a user runs the podman top command. This action gives the attacker access to the host filesystem, leading to information disclosure or denial of service.