runc — CWE-276

All FrameworksruncCWE-276

1 CVEs categorized as CWE-276 in runc.

CVE-2022-29162MEDIUM2022
runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. A bug was found in runc prior to version 1.1.2 where `runc exec --cap` created processes with non-empty inheritable Linux process capabilities, creating an atypical Linux environment and enabling prog…