Improper privilege management in containerd - #VU146902
Published: September 4, 2026
Vulnerability details
The vulnerability allows a local user to execute processes with elevated privileges.
The vulnerability exists due to improper privilege management in the containerd CRI checkpoint restore implementation when restoring an untrusted checkpoint through the CreateContainer API. A local user can create a container using a crafted checkpoint image to execute processes with elevated privileges.
The issue affects Linux systems with CRI checkpoint restore enabled. CRI status reporting reflects the requested configuration rather than the actual restored process state.