libpod project records
5 published records for vendor libpod project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-250 Execution with Unnecessary Privileges1
- CWE-522 Insufficiently Protected Credentials1
- CWE-552 Files or Directories Accessible to External Parties1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2018-10856No exploit | It has been discovered that podman before version 0.6.1 does not drop capabilities when executing a container as a non-root user.libpod project · libpod · CWE-250 | High8.8 | — | 0.9% | Jul 2, 2018 |
28Monitor | CVE-2019-10152No exploit | A path traversal vulnerability has been discovered in podman before version 1.4.0 in the way it handles symlinks inside containers.libpod project · libpod · CWE-22 | High7.2 | — | 0.5% | Jul 30, 2019 |
24Monitor | CVE-2020-1726No exploit | A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volumes, even if they arelibpod project · libpod · CWE-552 | Medium5.9 | — | 1.8% | Feb 11, 2020 |
23Monitor | CVE-2019-10214No exploit | The containers/image library used by the container tools Podman, Buildah, and Skopeo in Red Hat Enterprise Linux version 8 and CRI-O in Openbuildah project · buildah · CWE-522 | Medium5.9 | — | 1.6% | Nov 25, 2019 |
22Monitor | CVE-2019-18466No exploit | An issue was discovered in Podman in libpod before 1.6.0.libpod project · libpod · CWE-59 | Medium5.5 | — | 1.5% | Oct 28, 2019 |
- CVE-2018-1085635Monitor
It has been discovered that podman before version 0.6.1 does not drop capabilities when executing a container as a non-root user.
HighCVSS 8.8No exploitEPSS 1%libpod project · libpodJul 2, 2018
- CVE-2019-1015228Monitor
A path traversal vulnerability has been discovered in podman before version 1.4.0 in the way it handles symlinks inside containers.
HighCVSS 7.2No exploitEPSS 0%libpod project · libpodJul 30, 2019
- CVE-2020-172624Monitor
A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volumes, even if they are
MediumCVSS 5.9No exploitEPSS 2%libpod project · libpodFeb 11, 2020
- CVE-2019-1021423Monitor
The containers/image library used by the container tools Podman, Buildah, and Skopeo in Red Hat Enterprise Linux version 8 and CRI-O in Open
MediumCVSS 5.9No exploitEPSS 2%buildah project · buildahNov 25, 2019
- CVE-2019-1846622Monitor
An issue was discovered in Podman in libpod before 1.6.0.
MediumCVSS 5.5No exploitEPSS 2%libpod project · libpodOct 28, 2019