CVE-2019-18837

CVE-2019-18837

An issue was discovered in crun before 0.10.5. With a crafted image, it doesn’t correctly check whether a target is a symlink, resulting in access to files outside of the container. This occurs in libcrun/linux.c and libcrun/chroot_realpath.c.

Source: CVE-2019-18837

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다