Search CVE reports


Toggle filters

11 – 20 of 21 results


CVE-2022-31030

Medium priority

Some fixes available 5 of 6

containerd is an open source container runtime. A bug was found in the containerd's CRI implementation where programs inside a container can cause the containerd daemon to consume memory without bound during invocation of the...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed
Show less packages

CVE-2022-24778

Medium priority

Some fixes available 3 of 5

The imgcrypt library provides API exensions for containerd to support encrypted container images and implements the ctd-decoder command line tool for use by containerd to decrypt encrypted container images. The imgcrypt function...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-24769

Medium priority

Some fixes available 4 of 6

Moby is an open-source project created by Docker to enable and accelerate software containerization. A bug was found in Moby (Docker Engine) prior to version 20.10.14 where containers were incorrectly started with...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-23648

Medium priority
Fixed

containerd is a container runtime available as a daemon for Linux and Windows. A bug was found in containerd prior to versions 1.6.1, 1.5.10, and 1.14.12 where containers launched through containerd’s CRI implementation on Linux...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed
Show less packages

CVE-2021-43816

Low priority

Some fixes available 10 of 12

containerd is an open source container runtime. On installations using SELinux, such as EL8 (CentOS, RHEL), Fedora, or SUSE MicroOS, with containerd since v1.5.0-beta.0 as the backing container runtime interface (CRI), an...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-41190

Low priority

Some fixes available 10 of 19

The OCI Distribution Spec project defines an API protocol to facilitate and standardize the distribution of content. In the OCI Distribution Specification version 1.0.0 and prior, the Content-Type header alone was used to...

3 affected packages

containerd, docker-registry, docker.io

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed Fixed
docker-registry Not affected Not affected Not affected Not affected
docker.io Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2021-41103

High priority
Fixed

containerd is an open source container runtime with an emphasis on simplicity, robustness and portability. A bug was found in containerd where container root directories and some plugins had insufficiently restricted permissions,...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed
Show less packages

CVE-2021-32760

High priority
Fixed

containerd is a container runtime. A bug was found in containerd versions prior to 1.4.8 and 1.5.4 where pulling and extracting a specially-crafted container image can result in Unix file permission changes for existing files in...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed
Show less packages

CVE-2021-21334

Medium priority

Some fixes available 12 of 13

In containerd (an industry-standard container runtime) before versions 1.3.10 and 1.4.4, containers launched through containerd's CRI implementation (through Kubernetes, crictl, or any other pod/container client that uses the...

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed Fixed
Show less packages

CVE-2020-15257

Medium priority
Fixed

containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd before versions 1.3.9 and 1.4.3, the containerd-shim API is improperly exposed to host network containers....

1 affected package

containerd

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed
Show less packages