CVE-2019-16884

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

runc through 1.0.0-rc8, as used in Docker through 19.03.2-ce and other products, allows AppArmor restriction bypass because libcontainer/rootfs_linux.go incorrectly checks mount targets, and thus a malicious Docker image can mount over a /proc directory.

References

http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00073.html

https://github.com/opencontainers/runc/issues/2128

https://lists.fedoraproject.org/archives/list/[email protected]/message/62OQ2P7K5YDZ5BRCH2Q6DHUJIHQD3QCD/

https://lists.fedoraproject.org/archives/list/[email protected]/message/DGK6IV5JGVDXHOXEKJOJWKOVNZLT6MYR/

https://lists.fedoraproject.org/archives/list/[email protected]/message/SPK4JWP32BUIVDJ3YODZSOEVEW6BHQCF/

Details

Source: MITRE

Published: 2019-09-25

Updated: 2019-10-08

Type: CWE-863

Risk Information

CVSS v2

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM

CVSS v3

Base Score: 7.5

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Impact Score: 3.6

Exploitability Score: 3.9

Severity: HIGH

Tenable Plugins

View all (21 total)

IDNameProductFamilySeverity
147293NewStart CGSL CORE 5.04 / MAIN 5.04 : containerd.io Multiple Vulnerabilities (NS-SA-2021-0006)NessusNewStart CGSL Local Security Checks
high
145671CentOS 8 : container-tools:rhel8 (CESA-2019:4269)NessusCentOS Local Security Checks
medium
136576Photon OS 3.0: Docker PHSA-2020-3.0-0088NessusPhotonOS Local Security Checks
high
136568Photon OS 2.0: Docker PHSA-2020-2.0-0241NessusPhotonOS Local Security Checks
high
136552Photon OS 1.0: Docker PHSA-2020-1.0-0292NessusPhotonOS Local Security Checks
high
135084RHEL 7 : docker (RHSA-2020:1234)NessusRed Hat Local Security Checks
high
134598GLSA-202003-21 : runC: Multiple vulnerabilitiesNessusGentoo Local Security Checks
high
134367Ubuntu 18.04 LTS / 19.10 : runc vulnerabilities (USN-4297-1)NessusUbuntu Local Security Checks
high
132914openSUSE Security Update : containerd / docker / docker-runc / etc (openSUSE-2020-45)NessusSuSE Local Security Checks
high
132743SUSE SLED15 / SLES15 Security Update : containerd, docker, docker-runc, golang-github-docker-libnetwork (SUSE-SU-2020:0035-1)NessusSuSE Local Security Checks
high
132667Oracle Linux 8 : container-tools:ol8 (ELSA-2019-4269) (Ping Flood) (Reset Flood)NessusOracle Linux Local Security Checks
medium
132234RHEL 8 : container-tools:rhel8 (RHSA-2019:4269) (Ping Flood) (Reset Flood)NessusRed Hat Local Security Checks
medium
131678RHEL 8 : OpenShift Container Platform 4.2 runc (RHSA-2019:4074)NessusRed Hat Local Security Checks
high
131217RHEL 8 : OpenShift Container Platform 4.1.24 runc (RHSA-2019:3940)NessusRed Hat Local Security Checks
high
130577openSUSE Security Update : docker-runc (openSUSE-2019-2434)NessusSuSE Local Security Checks
high
130448openSUSE Security Update : docker-runc (openSUSE-2019-2418)NessusSuSE Local Security Checks
high
130391SUSE SLES15 Security Update : runc (SUSE-SU-2019:2810-1)NessusSuSE Local Security Checks
high
130345SUSE SLED15 / SLES15 Security Update : docker-runc (SUSE-SU-2019:2786-1)NessusSuSE Local Security Checks
high
129952Fedora 30 : 2:runc (2019-96946c39dd)NessusFedora Local Security Checks
high
129951Fedora 29 : 2:runc (2019-3fc86a518b)NessusFedora Local Security Checks
high
129702Fedora 31 : 2:runc (2019-bd4843561c)NessusFedora Local Security Checks
high