Vulnerability Report: GO-2022-0558
- CVE-2022-1227, GHSA-66vw-v2x9-hw75
- Affects: github.com/containers/psgo
- Published: Aug 22, 2022
- Modified: May 20, 2024
The psgo package executes the 'nsenter' binary, potentially allowing privilege escalation when used in environments where nsenter is provided by an untrusted source.
Affected Packages
-
PathGo VersionsSymbols
-
before v1.7.2
-
before v1.7.2
Aliases
References
- https://github.com/containers/psgo/pull/92
- https://github.com/containers/podman/issues/10941
- https://vuln.go.dev/ID/GO-2022-0558.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.