#VU33996 Link following in Kata Containers - CVE-2020-2024
Published: August 5, 2020
Kata Containers
Kata Containers
Description
The vulnerability allows a remote attacker to perform a denial of service attack.
An improper link resolution vulnerability affects Kata Containers versions prior to 1.11.0. Upon container teardown, a malicious guest can trick the kata-runtime into unmounting any mount point on the host and all mount points underneath it, potentiality resulting in a host DoS.