Security restrictions bypass in Podman - CVE-2021-20188
Published: March 2, 2021
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to file permissions for non-root users running in a privileged container are not correctly checked. A local low-privileged user inside the container can access arbitrary files in the container despite file permissions, e.g. even files owned by the root user inside the container are accessible.
Successful exploitation of the vulnerability may allow a local user to escalate privileges on the system.
Affected software
podman (Red Hat package)
podman
podman-debuginfo
podman-help
podman-debugsource
python3-podman
python3-pypodman
podman-docker
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux Server - TUS
openEuler
How to mitigate CVE-2021-20188
podman (Red Hat package) - update to 1.6.4-29.el7_9
podman - update to 0.10.1-8
podman-debuginfo - update to 0.10.1-8
podman-help - update to 0.10.1-8
podman-debugsource - update to 0.10.1-8
python3-podman - update to 0.10.1-8
python3-pypodman - update to 0.10.1-8
podman-docker - update to 0.10.1-8
External References
Related Security Bulletins
- Privilege escalation in Podman
- Red Hat Enterprise Linux 7 Extras update for podman
- Red Hat Enterprise Linux 8 update for the container-tools:1.0 module
- Red Hat Enterprise Linux 8 update for the container-tools:2.0 module
- Red Hat Enterprise Linux 8.2 update for the container-tools:2.0 module
- openEuler update for podman