Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tristan De Cacqueray

Researcher fromRed Hat
#44561of 53,633
5.9Total CVSS
Vulnerabilities · 1
PT-2020-14915
5.9
2020-02-11
Red Hat · Podman · CVE-2020-1726
**Name of the Vulnerable Software and Affected Versions** Podman versions 1.6.0 and later **Description** A flaw was discovered in Podman where it incorrectly allows containers to overwrite existing files in volumes, even if they are mounted as read-only. This issue can be triggered when a user runs a malicious container or a container based on a malicious image with an attached volume that is used for the first time, allowing the overwrite of files in the volume. **Recommendations** For Podman versions 1.6.0 and later, at the moment, there is no information about a newer version that contains a fix for this vulnerability.