ZeroHour

CVE-2020-2024

CVSS 3.1
6.5 medium
EPSS
<1%p30
Published
()
Modified
Description

An improper link resolution vulnerability affects Kata Containers versions prior to 1.11.0. Upon container teardown, a malicious guest can trick the kata-runtime into unmounting any mount point on the host and all mount points underneath it, potentiality resulting in a host DoS.

Vendors
katacontainers
Products
runtime
Weakness
CWE-59
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.