A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volumes, even if they are mounted as read-only. When a user runs a malicious container or a container based on a malicious image with an attached volume that is used for the first time, it is possible to trigger the flaw and overwrite files in the volume.This issue was introduced in version 1.6.0.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2020-02-11T19:45:26
Updated: 2020-09-28T14:06:06
Reserved: 2019-11-27T00:00:00
Link: CVE-2020-1726
JSON object: View
NVD Information
Status : Modified
Published: 2020-02-11T20:15:12.070
Modified: 2023-02-12T23:40:34.280
Link: CVE-2020-1726
JSON object: View
Redhat Information
No data.
CWE