Google / Gvisor
7 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-96812 | Host Root Sandbox Escape in gVisor via Character Device Passthrough and CUSE | HIGH | 8.8 | Sep 25, 2026 |
| CVE-2025-2713 | Improper File Permission Handling in Google gVisor runsc | MEDIUM | 6.8 | Mar 28, 2025 |
| CVE-2024-10603 | Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be predicted by an external attacker in so… | MEDIUM | 6.3 | Jan 30, 2025 |
| CVE-2024-10026 | Improved Seeding and Hashing In gVisor | MEDIUM | 6.3 | Jan 30, 2025 |
| CVE-2023-7258 | Denial-of-Service in Gvisor | MEDIUM | 6.5 | May 15, 2024 |
| CVE-2018-20168 | Google gVisor before 2018-08-22 reuses a pagetable in a different level with the paging-structure cache intact, which allows attackers to cause a denial of ser… | MEDIUM | 5.5 | Dec 17, 2018 |
| CVE-2018-19333 | pkg/sentry/kernel/shm/shm.go in Google gVisor before 2018-11-01 allows attackers to overwrite memory locations in processes running as root (but not escape the… | CRITICAL | 9.8 | Nov 17, 2018 |
| CVE-2018-16359 | Google gVisor before 2018-08-23, within the seccomp sandbox, permits access to the renameat system call, which allows attackers to rename files on the host OS. | MEDIUM | 6.8 | Sep 2, 2018 |
Showing 1 to 7 of 7 CVEs