Vulnerabilities > Katacontainers > Runtime > 1.8.5

DATE CVE VULNERABILITY TITLE RISK
2020-06-10 CVE-2020-2026 Link Following vulnerability in multiple products
A malicious guest compromised before a container creation (e.g.
local
low complexity
katacontainers fedoraproject CWE-59
8.8
2020-06-10 CVE-2020-2023 Unspecified vulnerability in Katacontainers Runtime
Kata Containers doesn't restrict containers from accessing the guest's root filesystem device.
local
low complexity
katacontainers
4.6
2020-05-19 CVE-2020-2025 Improper Preservation of Permissions vulnerability in Katacontainers Runtime
Kata Containers before 1.11.0 on Cloud Hypervisor persists guest filesystem changes to the underlying image file on the host.
local
low complexity
katacontainers CWE-281
4.6
2020-05-19 CVE-2020-2024 Link Following vulnerability in Katacontainers Runtime
An improper link resolution vulnerability affects Kata Containers versions prior to 1.11.0.
local
low complexity
katacontainers CWE-59
2.1