CVE-2024-3154

Publication date

2024-04-26 03:12:38

Family

redhat

State

PUBLISHED

Description

A flaw was found in cri-o, where an arbitrary systemd property can be injected via a Pod annotation. Any user who can create a pod with an arbitrary annotation may perform an arbitrary action on the host system.