Vulnerabilities (CVE)

Filtered by vendor Openeuler Subscribe
Total 8 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-33634 1 Openeuler 1 Icr 2023-12-10 N/A 5.5 MEDIUM
iSulad uses the lcr+lxc runtime (default) to run malicious images, which can cause DOS.
CVE-2021-33637 1 Openeuler 1 Isula 2023-12-10 N/A 6.5 MEDIUM
When the isula export command is used to export a container to an image and the container is controlled by an attacker, the attacker can escape the container.
CVE-2021-33635 1 Openeuler 1 Isula 2023-12-10 N/A 7.8 HIGH
When malicious images are pulled by isula pull, attackers can execute arbitrary code.
CVE-2021-33636 1 Openeuler 1 Isula 2023-12-10 N/A 7.8 HIGH
When the isula load command is used to load malicious images, attackers can execute arbitrary code.
CVE-2021-33638 1 Openeuler 1 Isula 2023-12-10 N/A 6.5 MEDIUM
When the isula cp command is used to copy files from a container to a host machine and the container is controlled by an attacker, the attacker can escape the container.
CVE-2021-33641 1 Openeuler 1 Byacc 2023-12-10 N/A 7.8 HIGH
When processing files, malloc stores the data of the current line. When processing comments, malloc incorrectly accesses the released memory (use after free).
CVE-2021-33642 1 Openeuler 1 Byacc 2023-12-10 N/A 5.5 MEDIUM
When a file is processed, an infinite loop occurs in next_inline() of the more_curly() function.
CVE-2021-33629 1 Openeuler 1 Isula-build 2023-12-10 5.0 MEDIUM 7.5 HIGH
isula-build before 0.9.5-6 can cause a program crash, when building container images, some functions for processing external data do not remove spaces when processing data.