blob: e225c5bfade120dfa7af8b3303deca331fa79350 [file] [log] [blame]
id: GO-2022-0608
modules:
- module: github.com/cri-o/cri-o
versions:
- fixed: 1.23.1
vulnerable_at: 1.23.0
summary: Incorrect Permission Assignment for Critical Resource in CRI-O in github.com/cri-o/cri-o
cves:
- CVE-2022-0532
ghsas:
- GHSA-jqmc-79gx-7g8p
references:
- advisory: https://github.com/advisories/GHSA-jqmc-79gx-7g8p
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-0532
- fix: https://github.com/cri-o/cri-o/pull/5610
- web: https://bugzilla.redhat.com/show_bug.cgi?id=2051730
- web: https://github.com/cri-o/cri-o/releases/tag/v1.23.1
- web: https://kubernetes.io/docs/tasks/administer-cluster/sysctl-cluster/#enabling-unsafe-sysctls
source:
id: GHSA-jqmc-79gx-7g8p
created: 2024-08-20T14:07:11.296031-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE