CVE-2016-9962

RunC allowed additional container processes via 'runc exec' to be ptraced by the pid 1 of the container. This allows the main processes of the container, if running as root, to gain access to file-descriptors of these new processes during the initialization and can lead to container escapes or modification of runC state before the process is fully placed inside the container.
Configurations

Configuration 1 (hide)

cpe:2.3:a:docker:docker:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-01-31 22:59

Updated : 2023-11-07 02:37


NVD link : CVE-2016-9962

Mitre link : CVE-2016-9962

CVE.ORG link : CVE-2016-9962


JSON object : View

Products Affected

docker

  • docker
CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')