blob: 02d0264f897c5bae253456248ce0c5e02fccc32b [file] [log] [blame]
packages:
- module: github.com/opencontainers/runc
package: github.com/opencontainers/runc/libcontainer
versions:
- fixed: 1.0.0-rc8.0.20190930145003-cad42f6e0932
- module: github.com/opencontainers/selinux
package: github.com/opencontainers/selinux/go-selinux
versions:
- fixed: 1.3.1-0.20190929122143-5215b1806f52
description: |
AppArmor restrictions may be bypassed due to improper validation of mount
targets, allowing a malicious image to mount volumes over e.g. /proc.
published: 2021-04-14T20:04:52Z
cves:
- CVE-2019-16884
ghsas:
- GHSA-fgv8-vj5c-2ppq
credit: Leopold Schabel
links:
pr: https://github.com/opencontainers/runc/pull/2130
commit: https://github.com/opencontainers/runc/commit/cad42f6e0932db0ce08c3a3d9e89e6063ec283e4
context:
- https://github.com/opencontainers/runc/issues/2128