HIGH 8.8 Go

Podman Elevated Container Privileges

GHSA-wp7w-vx86-vj9h · CVE-2018-10856 · GO-2023-1962

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

It has been discovered that podman before version 0.6.1 does not drop capabilities when executing a container as a non-root user. This results in unnecessary privileges being granted to the container.

Ready to move

Start Securing

Free, no credit card | First findings in minutes