Database/Container, Kubernetes & orchestration
runc: Netlink bytemsg length integer overflow in libcontainer allows config injection / partial escape
CVE-2021-43784Container, Kubernetes & orchestrationcurated
Impact
Netlink bytemsg length integer overflow in libcontainer allows config injection / partial escape
Who can reach it
Any tenant workload with control over container config
What to do
Replace runc binary; drain node
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.