Sylabs · Singularity · CVE-2018-12021
**Name of the Vulnerable Software and Affected Versions**
Singularity versions 2.3.0 through 2.5.1
**Description**
The issue is related to incorrect access control on systems that support the overlay file system. A malicious user can exploit specific Singularity features to access sensitive information when the overlay option is used.
**Recommendations**
For versions 2.3.0 through 2.5.1, consider disabling the overlay file system option as a temporary workaround until a patch is available. Restrict access to sensitive information and Singularity features that can be exploited to minimize the risk of unauthorized access.