CVE-2023-0778

6.8MEDIUM

A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for access

发布于: 3/27/2023更新于: 2/24/2025

描述

A Time-of-check Time-of-use (TOCTOU) flaw was found in podman. This issue may allow a malicious user to replace a normal file in a volume with a symlink while exporting the volume, allowing for access to arbitrary files on the host file system.

AI分析AI驱动

受影响产品

podman_projectpodman
-
redhatenterprise_linux
8.0
redhatenterprise_linux
9.0

参考资料