<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 11:59:02 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-02430</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-02430</link>
      <description>bdu:2024-02430</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-02430</guid>
    </item>
    <item>
      <title>EUVD-2026-12730</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-12730</link>
      <description>EUVD-2026-12730</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-12730</guid>
    </item>
    <item>
      <title>fkie_cve-2022-4318</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-4318</link>
      <description>&lt;p&gt;A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-4318</guid>
    </item>
    <item>
      <title>GHSA-cm9x-c3rh-7rc4 — CRI-O vulnerable to /etc/passwd tampering resulting in Privilege Escalation</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cm9x-c3rh-7rc4</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/cri-o/cri-o&lt;/p&gt;
&lt;p&gt;### Impact
It is possible to craft an environment variable with newlines to add entries to a container&amp;#39;s /etc/passwd. It is possible to circumvent admission validation of username/UID by adding such an entry.&lt;/p&gt;
&lt;p&gt;Note: because the pod author is in control of the container&amp;#39;s /etc/passwd, this is not considered a new risk factor. However, this advisory is being opened for transparency and as a way of tracking fixes.&lt;/p&gt;
&lt;p&gt;### Patches
1.26.0 will have the fix. More patches will be posted as they&amp;#39;re available.&lt;/p&gt;
&lt;p&gt;### Workarounds
Additional security controls like SELinux should prevent any damage a container is able to do with root on the host. Using SELinux is recommended because this class of attack is already possible by manually editing the container&amp;#39;s /etc/passwd&lt;/p&gt;
&lt;p&gt;### References&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/cri-o/cri-o&lt;/p&gt;
&lt;p&gt;### Impact
It is possible to craft an environment variable with newlines to add entries to a container&amp;#39;s /etc/passwd. It is possible to circumvent admission validation of username/UID by adding such an entry.&lt;/p&gt;
&lt;p&gt;Note: because the pod author is in control of the container&amp;#39;s /etc/passwd, this is not considered a new risk factor. However, this advisory is being opened for transparency and as a way of tracking fixes.&lt;/p&gt;
&lt;p&gt;### Patches
1.26.0 will have the fix. More patches will be posted as they&amp;#39;re available.&lt;/p&gt;
&lt;p&gt;### Workarounds
Additional security controls like SELinux should prevent any damage a container is able to do with root on the host. Using SELinux is recommended because this class of attack is already possible by manually editing the container&amp;#39;s /etc/passwd&lt;/p&gt;
&lt;p&gt;### References&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cm9x-c3rh-7rc4</guid>
    </item>
    <item>
      <title>gsd-2022-4318</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-4318</link>
      <description>gsd-2022-4318</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-4318</guid>
    </item>
    <item>
      <title>msrc_CVE-2022-4318 — Cri-o: /etc/passwd tampering privesc</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2022-4318</link>
      <description>msrc_CVE-2022-4318</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2022-4318</guid>
    </item>
    <item>
      <title>OESA-2024-1406 — cri-o security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-1406</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP1: cri-o&lt;/p&gt;
&lt;p&gt;Open Container Initiative-based implementation of Kubernetes Container Runtime Interface.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of small requests.(CVE-2022-41723)&#13;
&#13;
A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable.(CVE-2022-4318)&#13;
&#13;
A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption. While the total number of requests is bounded by the http2.Server.MaxConcurrentStreams setting, resetting an in-progress request allows the attacker to create a new request while the existing one is still executing. With the fix applied, HTTP/2 servers now bound the number of simultaneously executing handler goroutines to the stream concurrency limit (MaxConcurrentStreams). New requests arriving when at the limit (which can only happen after the client has reset an existing, in-flight request) will be queued until a handler exits. If the request queue grows too large, the server will terminate the connection. This issue is also fixed in golang.org/x/net/http2 for users manually configuring HTTP/2. The default stream concurrency limit is 250 streams (requests) per HTTP/2 connection. This value may be adjusted using the golang.org/x/net/http2 package; see the Server.MaxConc…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP1: cri-o&lt;/p&gt;
&lt;p&gt;Open Container Initiative-based implementation of Kubernetes Container Runtime Interface.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A maliciously crafted HTTP/2 stream could cause excessive CPU consumption in the HPACK decoder, sufficient to cause a denial of service from a small number of small requests.(CVE-2022-41723)&#13;
&#13;
A vulnerability was found in cri-o. This issue allows the addition of arbitrary lines into /etc/passwd by use of a specially crafted environment variable.(CVE-2022-4318)&#13;
&#13;
A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption. While the total number of requests is bounded by the http2.Server.MaxConcurrentStreams setting, resetting an in-progress request allows the attacker to create a new request while the existing one is still executing. With the fix applied, HTTP/2 servers now bound the number of simultaneously executing handler goroutines to the stream concurrency limit (MaxConcurrentStreams). New requests arriving when at the limit (which can only happen after the client has reset an existing, in-flight request) will be queued until a handler exits. If the request queue grows too large, the server will terminate the connection. This issue is also fixed in golang.org/x/net/http2 for users manually configuring HTTP/2. The default stream concurrency limit is 250 streams (requests) per HTTP/2 connection. This value may be adjusted using the golang.org/x/net/http2 package; see the Server.MaxConc…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-1406</guid>
    </item>
    <item>
      <title>RHSA-2023:1033 — Red Hat Security Advisory: OpenShift Container Platform 4.12.6 packages and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:1033</link>
      <description>&lt;p&gt;cri-o: /etc/passwd tampering privesc&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cri-o: /etc/passwd tampering privesc&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:1033</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0600 — Red Hat OpenShift: Schwachstelle ermöglicht Manipulation von Dateien</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0600</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat OpenShift ausnutzen, um Dateien zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat OpenShift ausnutzen, um Dateien zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0600</guid>
    </item>
  </channel>
</rss>
