Kata Containers Runtime 1.9.4

CPE Details

Kata Containers Runtime 1.9.4
1.9.4
2020-05-20
15h36 +00:00
2020-05-20
15h36 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:katacontainers:runtime:1.9.4:*:*:*:*:*:*:*

Informations

Vendor

katacontainers

Product

runtime

Version

1.9.4

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2020-2025 2020-05-19 21h05 +00:00 Kata Containers before 1.11.0 on Cloud Hypervisor persists guest filesystem changes to the underlying image file on the host. A malicious guest can overwrite the image file to gain control of all subsequent guest VMs. Since Kata Containers uses the same VM image file with all VMMs, this issue may also affect QEMU and Firecracker based guests.
8.8
Haute
CVE-2020-2024 2020-05-19 21h05 +00:00 An improper link resolution vulnerability affects Kata Containers versions prior to 1.11.0. Upon container teardown, a malicious guest can trick the kata-runtime into unmounting any mount point on the host and all mount points underneath it, potentiality resulting in a host DoS.
6.5
Moyen