<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 18:51:19 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-349745</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-349745</link>
      <description>EUVD-2026-349745</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-349745</guid>
    </item>
    <item>
      <title>fkie_cve-2026-47243</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-47243</link>
      <description>&lt;p&gt;Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. Prior to 3.31.0, the runtime-rs standalone virtio-fs path is vulnerable to a guest-root to host-root escape. In this configuration, Kata runs the host virtiofsd as root with --sandbox none --seccomp none, so an attacker with root-equivalent access inside the guest can bypass the guest virtio-fs client entirely by taking over the virtio-fs PCI device and building a virtqueue in userspace to submit raw FUSE requests directly to the host virtiofsd. A crafted FUSE_SYMLINK request whose new symlink name is an absolute host path is honored outside the configured shared directory, allowing guest root to create root-owned symlinks in sensitive host locations such as /etc/cron.d. By pointing such a symlink at a guest-controlled crontab payload reachable through a live runtime process&amp;#39;s mount namespace, the attacker causes the host cron daemon to execute that payload as host root, crossing the Kata isolation boundary. This issue is fixed in version 3.31.0.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. Prior to 3.31.0, the runtime-rs standalone virtio-fs path is vulnerable to a guest-root to host-root escape. In this configuration, Kata runs the host virtiofsd as root with --sandbox none --seccomp none, so an attacker with root-equivalent access inside the guest can bypass the guest virtio-fs client entirely by taking over the virtio-fs PCI device and building a virtqueue in userspace to submit raw FUSE requests directly to the host virtiofsd. A crafted FUSE_SYMLINK request whose new symlink name is an absolute host path is honored outside the configured shared directory, allowing guest root to create root-owned symlinks in sensitive host locations such as /etc/cron.d. By pointing such a symlink at a guest-controlled crontab payload reachable through a live runtime process&amp;#39;s mount namespace, the attacker causes the host cron daemon to execute that payload as host root, crossing the Kata isolation boundary. This issue is fixed in version 3.31.0.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-47243</guid>
    </item>
    <item>
      <title>GHSA-2gv2-cffp-j227 — Kata guest escape: runtime-rs guest-root to host-root escape via virtiofs</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2gv2-cffp-j227</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/kata-containers/kata-containers&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;In the runtime-rs standalone virtio-fs path, verified here with QEMU (and verified with Cloud Hypervisor too), Kata Containers runs host `virtiofsd` as root with:&lt;/p&gt;
&lt;p&gt;```
--sandbox none --seccomp none
```&lt;/p&gt;
&lt;p&gt;If an attacker has root-equivalent execution inside the Kata guest VM, they can send raw FUSE requests directly to the host `virtiofsd`. With the tested runtime-rs virtio-fs configuration, a raw `FUSE_SYMLINK` request whose new symlink name is an absolute host path is honored outside the virtio-fs shared directory.&lt;/p&gt;
&lt;p&gt;This lets guest root create host-root owned symlinks in sensitive host paths. The PoC created here will create symlinks in the host `/etc/cron.d` directory, causing host cron to execute a guest-controlled payload as host root.&lt;/p&gt;
&lt;p&gt;Impact: guest root can execute code as host root.&lt;/p&gt;
&lt;p&gt;### Affected configuration&lt;/p&gt;
&lt;p&gt;The verified host used:&lt;/p&gt;
&lt;p&gt;```
/opt/kata/share/defaults/kata-containers/runtime-rs/configuration-qemu-runtime-rs.toml&lt;/p&gt;
&lt;p&gt;rootless = false
shared_fs = &amp;#34;virtio-fs&amp;#34;
virtio_fs_daemon = &amp;#34;/opt/kata/libexec/virtiofsd&amp;#34;
hypervisor_name = &amp;#34;qemu&amp;#34;
debug_console_enabled = false
```&lt;/p&gt;
&lt;p&gt;Pinned upstream references, using Kata Containers `main` commit `2ffd1538a296cff93a357bfba0dfca747480a1f8`:&lt;/p&gt;
&lt;p&gt;- runtime-rs standalone virtio-fs adds [`--sandbox none --seccomp none`](https://github.com/kata-containers/kata-containers/blob/2ffd1538a296cff93a357bfba0dfca747480a1f8/src/runtime-rs/crates/resource/src/share_fs/share_virtio_fs_standalone.rs#L82-L92) to the `virtiofsd` command li…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/kata-containers/kata-containers&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;In the runtime-rs standalone virtio-fs path, verified here with QEMU (and verified with Cloud Hypervisor too), Kata Containers runs host `virtiofsd` as root with:&lt;/p&gt;
&lt;p&gt;```
--sandbox none --seccomp none
```&lt;/p&gt;
&lt;p&gt;If an attacker has root-equivalent execution inside the Kata guest VM, they can send raw FUSE requests directly to the host `virtiofsd`. With the tested runtime-rs virtio-fs configuration, a raw `FUSE_SYMLINK` request whose new symlink name is an absolute host path is honored outside the virtio-fs shared directory.&lt;/p&gt;
&lt;p&gt;This lets guest root create host-root owned symlinks in sensitive host paths. The PoC created here will create symlinks in the host `/etc/cron.d` directory, causing host cron to execute a guest-controlled payload as host root.&lt;/p&gt;
&lt;p&gt;Impact: guest root can execute code as host root.&lt;/p&gt;
&lt;p&gt;### Affected configuration&lt;/p&gt;
&lt;p&gt;The verified host used:&lt;/p&gt;
&lt;p&gt;```
/opt/kata/share/defaults/kata-containers/runtime-rs/configuration-qemu-runtime-rs.toml&lt;/p&gt;
&lt;p&gt;rootless = false
shared_fs = &amp;#34;virtio-fs&amp;#34;
virtio_fs_daemon = &amp;#34;/opt/kata/libexec/virtiofsd&amp;#34;
hypervisor_name = &amp;#34;qemu&amp;#34;
debug_console_enabled = false
```&lt;/p&gt;
&lt;p&gt;Pinned upstream references, using Kata Containers `main` commit `2ffd1538a296cff93a357bfba0dfca747480a1f8`:&lt;/p&gt;
&lt;p&gt;- runtime-rs standalone virtio-fs adds [`--sandbox none --seccomp none`](https://github.com/kata-containers/kata-containers/blob/2ffd1538a296cff93a357bfba0dfca747480a1f8/src/runtime-rs/crates/resource/src/share_fs/share_virtio_fs_standalone.rs#L82-L92) to the `virtiofsd` command li…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2gv2-cffp-j227</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-47243 — Kata guest escape: runtime-rs guest-root to host-root escape via virtiofs</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-47243</link>
      <description>msrc_CVE-2026-47243</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-47243</guid>
    </item>
    <item>
      <title>OESA-2026-2527 — kata-containers security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2527</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: kata-containers&lt;/p&gt;
&lt;p&gt;This is core component of Kata Container, to make it work, you need a isulad/docker engine.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;[&amp;amp;apos;This vulnerability was fixed in Kata Containers 3.31.0:&amp;amp;apos;, &amp;amp;apos;Description:\n\nIn the runtime-rs standalone virtio-fs path, Kata Containers runs virtiofsd\nas root with --sandbox none --seccomp none.\n\nIf an attacker has root-equivalent execution inside the Kata guest VM,\nthey can send raw FUSE requests directly to the host virtiofsd.\n\nThen, a raw FUSE_SYMLINK request whose new symlink name is\nan absolute host path is honored outside the virtio-fs shared directory.\n\nThis lets guest root create host-root-owned symlinks in sensitive host paths.\n\nCVE: CVE-2026-47243\nGHSA: GHSA-2gv2-cffp-j227\n\nOriginal report:&amp;amp;apos;, &amp;amp;apos;---\nAurelien Bombo\nKata Containers Vulnerability Management Team&amp;amp;apos;](CVE-2026-47243)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: kata-containers&lt;/p&gt;
&lt;p&gt;This is core component of Kata Container, to make it work, you need a isulad/docker engine.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;[&amp;amp;apos;This vulnerability was fixed in Kata Containers 3.31.0:&amp;amp;apos;, &amp;amp;apos;Description:\n\nIn the runtime-rs standalone virtio-fs path, Kata Containers runs virtiofsd\nas root with --sandbox none --seccomp none.\n\nIf an attacker has root-equivalent execution inside the Kata guest VM,\nthey can send raw FUSE requests directly to the host virtiofsd.\n\nThen, a raw FUSE_SYMLINK request whose new symlink name is\nan absolute host path is honored outside the virtio-fs shared directory.\n\nThis lets guest root create host-root-owned symlinks in sensitive host paths.\n\nCVE: CVE-2026-47243\nGHSA: GHSA-2gv2-cffp-j227\n\nOriginal report:&amp;amp;apos;, &amp;amp;apos;---\nAurelien Bombo\nKata Containers Vulnerability Management Team&amp;amp;apos;](CVE-2026-47243)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2527</guid>
    </item>
  </channel>
</rss>
