Total vulnerabilities in the database
A flaw was found in Go. When FIPS mode is enabled on a system, container runtimes may incorrectly handle certain file paths due to improper validation in the containers/common Go library. This flaw allows an attacker to exploit symbolic links and trick the system into mounting sensitive host directories inside a container. This issue also allows attackers to access critical host files, bypassing the intended isolation between containers and the host system.
Software | From | Fixed in |
---|---|---|
containers / common | - | - |
redhat / enterprise_linux | 8.0 | 8.0.x |
redhat / enterprise_linux | 9.0 | 9.0.x |
redhat / openshift_container_platform | 4.12 | 4.12.x |
redhat / openshift_container_platform | 4.13 | 4.13.x |
redhat / openshift_container_platform | 4.14 | 4.14.x |
redhat / openshift_container_platform | 4.15 | 4.15.x |
redhat / openshift_container_platform | 4.17 | 4.17.x |
redhat / openshift_container_platform | 4.16 | 4.16.x |