Beveiligingsadvies

CVE-2024-5154

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-12 08:51:43
Laatst bijgewerkt 2026-08-21 12:08:03
Toegewezen door redhat
CVSS-score 8.1
Status PUBLISHED

Beschrijving

A flaw was found in cri-o. A malicious container can create a symbolic link to arbitrary files on the host via directory traversal (“../“). This flaw allows the container to read and write to arbitrary files on the host system.