PT-2025-45350 · Runc+10 · Runc+10

Published

2025-11-04

·

Updated

2026-05-01

·

CVE-2025-31133

CVSS v3.1

7.8

High

VectorAV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions runc versions 1.2.0 through 1.2.7 runc versions 1.3.0-rc.1 through 1.3.1 runc versions 1.4.0-rc.1 through 1.4.0-rc.2
Description runc is a CLI tool for spawning and running containers according to the OCI specification. A race condition in the maskedPaths function allows for symlink following because the tool fails to sufficiently verify that the source of the bind-mount (such as the container's /dev/null) is an actual /dev/null inode when used for masking. This can lead to an arbitrary mount gadget, enabling host information disclosure, host denial of service, container escape, or the bypassing of maskedPaths, impacting the confidentiality, integrity, and availability of protected information.
Recommendations Update versions 1.2.0 through 1.2.7 to 1.2.8. Update versions 1.3.0-rc.1 through 1.3.1 to 1.3.3. Update versions 1.4.0-rc.1 through 1.4.0-rc.2 to 1.4.0-rc.3.

Exploit

Fix

DoS

Weakness Enumeration

Related Identifiers

ALSA-2025:19927
ALSA-2025:20957
ALSA-2025:21232
AZL-69818
AZL-70547
AZL-70592
BDU:2025-14041
CESA-2025_21232
CVE-2025-31133
ECHO-7751-7A0A-383B
GHSA-9493-H29P-RFM2
GO-2025-4096
INFSA-2025_19927
INFSA-2025_20957
INFSA-2025_21232
MGASA-2025-0271
OPENSUSE-SU-2025:15705-1
OPENSUSE-SU-2025:20072-1
OPENSUSE-SU-2026:10073-1
OPENSUSE-SU-2026:20072-1
OPENSUSE-SU-2026:20080-1
OPENSUSE-SU-2026:20140-1
OPENSUSE-SU-2026:20305-1
RHSA-2025:19927
RHSA-2025:20957
RHSA-2025:21232
RHSA-2025:21328
RHSA-2025_19927
RHSA-2025_20957
RHSA-2025_21232
RHSA-2026:0315
RHSA-2026:0331
RHSA-2026:0418
RHSA-2026:0425
RHSA-2026:0676
RHSA-2026:0701
RHSA-2026:0995
RHSA-2026:10703
RHSA-2026:1540
RHSA-2026:4531
RHSA-2026:4693
RHSA-2026:8325
SUSE-SU-2025:21036-1
SUSE-SU-2025:21038-1
SUSE-SU-2025:21054-1
SUSE-SU-2025:21072-1
SUSE-SU-2025:21136-1
SUSE-SU-2025:3950-1
SUSE-SU-2025:3951-1
SUSE-SU-2025:4073-1
SUSE-SU-2025:4073-2
SUSE-SU-2025:4077-1
SUSE-SU-2025:4079-1
SUSE-SU-2025:4080-1
SUSE-SU-2025:4081-1
SUSE-SU-2025_21136-1
SUSE-SU-2025_3950-1
SUSE-SU-2025_3951-1
SUSE-SU-2025_4073-1
SUSE-SU-2025_4073-2
SUSE-SU-2025_4077-1
SUSE-SU-2025_4079-1
SUSE-SU-2025_4080-1
SUSE-SU-2025_4081-1
SUSE-SU-2026:0327-1
SUSE-SU-2026:20103-1
SUSE-SU-2026:20116-1
SUSE-SU-2026:20123-1
SUSE-SU-2026:20214-1
SUSE-SU-2026:20626-1
SUSE-SU-2026:20641-1
SUSE-SU-2026:21291-1
USN-7851-1
USN-7851-2

Affected Products

Alt Linux
Almalinux
Centos
Debian
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu
Runc