Linux / Containerd
22 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-53489 | containerd: Arbitrary host CRI log file read via symlink following in CRI checkpoint restore | HIGH | 8.2 | Jul 1, 2026 |
| CVE-2026-53492 | containerd CRI checkpoint restore CDI annotation smuggling | HIGH | 8.4 | Jul 1, 2026 |
| CVE-2026-50195 | containerd: CRI checkpoint import allows local image tag poisoning | MEDIUM | 5.6 | Jul 1, 2026 |
| CVE-2026-47262 | containerd image-triggered runtime DoS via unbounded group parsing | MEDIUM | 6.9 | Jul 1, 2026 |
| CVE-2026-46680 | containerd user ID handling bypass allows runAsNonRoot evasion | HIGH | 7.3 | Jul 1, 2026 |
| CVE-2026-53488 | containerd CRI plugin: — image-config `LABEL` flows to restart-monitor `binary://` logger: host-root command execution from an image pull | CRITICAL | 9.4 | Jul 1, 2026 |
| CVE-2025-64329 | containerd CRI server: Host memory exhaustion through Attach goroutine leak | MEDIUM | 6.9 | Nov 7, 2025 |
| CVE-2024-25621 | containerd affected by a local privilege escalation via wide permissions on CRI directory | HIGH | 7.8 | Nov 6, 2025 |
| CVE-2025-47291 | containerd CRI plugin: Incorrect cgroup hierarchy assignment for containers running in usernamespaced Kubernetes pods. | MEDIUM | 4.6 | May 21, 2025 |
| CVE-2025-47290 | Containerd vulnerable to host filesystem access during image unpack | HIGH | 7.6 | May 20, 2025 |
| CVE-2024-40635 | containerd has an integer overflow in User ID handling | HIGH | 7.8 | Mar 17, 2025 |
| CVE-2023-25173 | containerd supplementary groups are not set up properly | HIGH | 7.8 | Feb 16, 2023 |
| CVE-2023-25153 | containerd OCI image importer memory exhaustion | MEDIUM | 6.2 | Feb 16, 2023 |
| CVE-2022-23471 | containerd CRI stream server: Host memory exhaustion through terminal resize goroutine leak | MEDIUM | 6.5 | Dec 7, 2022 |
| CVE-2022-31030 | containerd CRI plugin: Host memory exhaustion through ExecSync | MEDIUM | 5.5 | Jun 6, 2022 |
| CVE-2022-23648 | Insecure handling of image volumes in containerd CRI plugin | HIGH | 7.5 | Mar 3, 2022 |
| CVE-2021-43816 | Improper Preservation of Permissions in containerd | CRITICAL | 9.1 | Jan 5, 2022 |
| CVE-2021-41103 | Insufficiently restricted permissions on plugin directories | HIGH | 7.8 | Oct 4, 2021 |
| CVE-2021-32760 | Archive package allows chmod of file outside of unpack target directory | MEDIUM | 6.3 | Jul 19, 2021 |
| CVE-2021-21334 | environment variable leak | MEDIUM | 6.3 | Mar 10, 2021 |
| CVE-2020-15257 | containerd-shim API Exposed to Host Network Containers | HIGH | 8.8 | Dec 1, 2020 |
| CVE-2020-15157 | containerd can be coerced into leaking credentials during image pull | MEDIUM | 6.1 | Oct 16, 2020 |
Showing 1 to 22 of 22 CVEs