THREAT OPS › Threat News › [NVD] CVE-2024-21626 (HIGH 8.6) — runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal file descriptor leak, an attacker could cause a newly-spawned container process (from runc exec) to have a working directory in the h
[NVD] CVE-2024-21626 (HIGH 8.6) — runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal file descriptor leak, an attacker could cause a newly-spawned container process (from runc exec) to have a working directory in the h
CVE-2024-21626 CVSS: 8.6 HIGH Published: 2024-01-31T22:15:53.780
runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal file descriptor leak, an attacker could cause a newly-spawned container process (from runc exec) to have a working directory in the host filesystem namespace, allowing for a container esc
MITRE ATT&CK techniques
- Malicious ImageT1204.003
Indicators of compromise
- CVE-2024-21626cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-21626