Database/Container, Kubernetes & orchestration
runc: Regression of CVE-2019-19921: incorrect access control leading to privilege escalation via volume mounts
CVE-2023-27561Container, Kubernetes & orchestrationcurated
Impact
Regression of CVE-2019-19921: incorrect access control leading to privilege escalation via volume mounts
Who can reach it
Any tenant workload able to spawn two containers with custom mounts
What to do
Replace runc binary; drain node
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.