blob: 27ce936e5bf8601cc39b2110dad67b0fa819953d [file] [log] [blame]
id: GO-2023-1683
modules:
- module: github.com/opencontainers/runc
versions:
- fixed: 1.1.5
vulnerable_at: 1.1.4
summary: runc AppArmor bypass with symlinked /proc in github.com/opencontainers/runc
cves:
- CVE-2023-28642
ghsas:
- GHSA-g2j6-57v7-gm8c
references:
- advisory: https://github.com/opencontainers/runc/security/advisories/GHSA-g2j6-57v7-gm8c
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2023-28642
- fix: https://github.com/opencontainers/runc/pull/3785
source:
id: GHSA-g2j6-57v7-gm8c
created: 2024-08-20T11:39:28.577313-04:00
review_status: UNREVIEWED
unexcluded: EFFECTIVELY_PRIVATE