Skip to main content

Vendor/product archive

linuxfoundation / runc CVEs

Beta · best-effort

17 CVEs tagged to linuxfoundation / runc0 Critical, 10 High, 5 Medium, 2 Low, 0 Unrated.

CVE-2026-41579

Published Jul 1, 2026

runc is a CLI tool for spawning and running containers according to the OCI specification. In versions prior to 1.3.6, 1.4.0-rc.1, 1.4.0-rc.12, 1.5.0-rc.1, and 1.5.0-rc.1, when se…

CVSS 3.3 · Low
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2025-52881

Published Nov 6, 2025

runc is a CLI tool for spawning and running containers according to the OCI specification. In versions 1.2.7, 1.3.2 and 1.4.0-rc.2, an attacker can trick runc into misdirecting wr…

CVSS 7.3 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2025-52565

Published Nov 6, 2025

runc is a CLI tool for spawning and running containers according to the OCI specification. Versions 1.0.0-rc3 through 1.2.7, 1.3.0-rc.1 through 1.3.2, and 1.4.0-rc.1 through 1.4.0…

CVSS 8.4 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2025-31133

Published Nov 6, 2025

runc is a CLI tool for spawning and running containers according to the OCI specification. In versions 1.2.7 and below, 1.3.0-rc.1 through 1.3.1, 1.4.0-rc.1 and 1.4.0-rc.2 files,…

CVSS 7.3 · High
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2024-45310

Published Sep 3, 2024

runc is a CLI tool for spawning and running containers according to the OCI specification. runc 1.1.13 and earlier, as well as 1.2.0-rc2 and earlier, can be tricked into creating…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-28642

Published Mar 29, 2023

runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor can be bypassed when `/proc` inside the container is symlinke…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-25809

Published Mar 29, 2023

runc is a CLI tool for spawning and running containers according to the OCI specification. In affected versions it was found that rootless runc makes `/sys/fs/cgroup` writable in…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-43784

Published Dec 6, 2021

runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc, netlink is used internally as a serialization system for specifying th…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-16884

Published Sep 25, 2019

runc through 1.0.0-rc8, as used in Docker through 19.03.2-ce and other products, allows AppArmor restriction bypass because libcontainer/rootfs_linux.go incorrectly checks mount t…

CVSS 7.5 · High
Showing 1-17 of 17 CVEsPage 1 of 1