CVE-2020-2026
published 2020-06-10CVE-2020-2026: A malicious guest compromised before a container creation (e.g. a malicious guest image or a guest running multiple containers) can trick the kata runtime into…
PriorityP345high8.8CVSS 3.1
AVLACLPRLUINSCCHIHAH
EPSS
0.47%
38.5th percentile
A malicious guest compromised before a container creation (e.g. a malicious guest image or a guest running multiple containers) can trick the kata runtime into mounting the untrusted container filesystem on any host path, potentially allowing for code execution on the host. This issue affects: Kata Containers 1.11 versions earlier than 1.11.1; Kata Containers 1.10 versions earlier than 1.10.5; Kata Containers 1.9 and earlier versions.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | fedora | — | — |
| github.com | kata-containers_runtime | >= 0 < 1.9.1 | 1.9.1 |
| github.com | kata-containers_runtime | >= 1.10.0 < 1.10.6 | 1.10.6 |
| github.com | kata-containers_runtime | >= 1.11.0 < 1.11.1 | 1.11.1 |
| kata_containers | kata_containers | 1 – 1.9 | — |
| kata_containers | kata_containers | >= 1.10 < 1.10.5 | 1.10.5 |
| kata_containers | kata_containers | >= 1.11 < 1.11.1 | 1.11.1 |
| katacontainers | runtime | <= 1.9 | — |
| katacontainers | runtime | >= 1.10 < 1.10.5 | 1.10.5 |
| katacontainers | runtime | >= 1.11 < 1.11.1 | 1.11.1 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Link Following in Kata Runtime
ghsa·2022-02-15
CVE-2020-2026 [HIGH] CWE-59 Link Following in Kata Runtime
Link Following in Kata Runtime
A malicious guest compromised before a container creation (e.g. a malicious guest image or a guest running multiple containers) can trick the kata runtime into mounting the untrusted container filesystem on any host path, potentially allowing for code execution on the host. This issue affects Kata Containers 1.11 versions earlier than 1.11.1; Kata Containers 1.10 versions earlier than 1.10.5; Kata Containers 1.9 and earlier versions.
OSV
Link Following in Kata Runtime
osv·2022-02-15
CVE-2020-2026 [HIGH] Link Following in Kata Runtime
Link Following in Kata Runtime
A malicious guest compromised before a container creation (e.g. a malicious guest image or a guest running multiple containers) can trick the kata runtime into mounting the untrusted container filesystem on any host path, potentially allowing for code execution on the host. This issue affects Kata Containers 1.11 versions earlier than 1.11.1; Kata Containers 1.10 versions earlier than 1.10.5; Kata Containers 1.9 and earlier versions.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-2026 kata-proxy: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-proxy: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
CVE-2020-2026 kata-proxy: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bugzilla
CVE-2020-2026 kata-shim: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-shim: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
CVE-2020-2026 kata-shim: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
f
Bugzilla
CVE-2020-2026 kata-osbuilder: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-osbuilder: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
CVE-2020-2026 kata-osbuilder: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and
Bugzilla
CVE-2020-2026 kata-agent: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-agent: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
CVE-2020-2026 kata-agent: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bugzilla
CVE-2020-2026 kata-ksm-throttler: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-ksm-throttler: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
CVE-2020-2026 kata-ksm-throttler: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog
Bugzilla
CVE-2020-2026 kata-runtime: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-runtime: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
CVE-2020-2026 kata-runtime: kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution [fedora-31]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-31.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and th
Bugzilla
CVE-2020-2026 kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution
bugzilla·2020-06-18·CVSS 7.8
CVE-2020-2026 [HIGH] CVE-2020-2026 kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution
CVE-2020-2026 kata-containers: Possibility to mount untrusted container filesystem on any host path leads to Remote Code Execution
A malicious guest compromised before a container creation (e.g. a malicious guest image or a guest running multiple containers) can trick the kata runtime into mounting the untrusted container filesystem on any host path, potentially allowing for code execution on the host. This issue affects: Kata Containers 1.11 versions earlier than 1.11.1; Kata Containers 1.10 versions earlier than 1.10.5; Kata Containers 1.9 and earlier versions.
Upstream Issue:
https://github.com/kata-containers/runtime/issues/2712
Discussion:
Created kata-agent tracking bugs for this issue:
Affects: fedora-31 [bug 1848295]
Created kata-ksm-throttler tracking bugs for this issue:
Checkpoint
31st October – Threat Intelligence Report
blogs_checkpoint·2022-10-31
CVE-2022-3723 31st October – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 31st October – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 31st October, please download our Threat Intelligence Bulletin .
Top Attacks and Breaches
US-based communications company Twilio has disclosed a new data breach that occurred on June 2022 allegedly by the same threat actors behind the August hack. The hackers have used voice phishing to trick a Twilio employee into handling over their credentials, which the hackers then used to access customer information.
Cu
Checkpoint
10th October – Threat Intelligence Report
blogs_checkpoint·2022-10-10
CVE-2022-41352 10th October – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 10th October – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 10th October, please download our Threat Intelligence Bulletin .
Top Attacks and Breaches
CommonSpirit Health, the second-largest nonprofit hospital chain in the U.S with 140 hospitals and over 1,000 facilities in 21 states, suffered a cybersecurity incident that disrupted medical services across the country. Facilities in Iowa, Nebraska, Tennessee and Washington were among those affected. The nature of the at
Checkpoint
28th June – Threat Intelligence Report
blogs_checkpoint·2021-06-28
CVE-2021-21998 28th June – Threat Intelligence Report
Latest Publications
CPR Podcast Channel
AI Research
Web 3.0 Security
Intelligence Reports
ThreatCloud AI
Threat Intelligence & Research
Zero Day Protection
Sandblast File Analysis
About Us
SUBSCRIBE
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
## 28th June – Threat Intelligence Report
For the latest discoveries in cyber research for the week of 28th June, please download our Threat Intelligence Bulletin .
Top Attacks and Breaches
Russian-based threat group Nobelium is using password spraying and brute force attacks to gain access to corporate networks. The group, which was behind the SolarWinds supply-chain attack, deployed an information-stealing Trojan on a Microsoft customer support agent’s computer to steal information. Over half of the targets were
Crowdstrike
CrowdStrike@ Black Hat 2020
blogs_crowdstrike·CVSS 7.5
CVE-2026-20929 [HIGH] CrowdStrike@ Black Hat 2020
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How Charlotte AI AgentWorks Fuels Security's Agentic Ecosystem Mar 25, 2026
STARDUST CHOLLIMA Likely Compromises Axios npm Package Apr 01, 2026
Falcon for IT Supports Windows Secure Boot Certificate Lifecycle Management Apr 01, 2026
Detecting CVE-2026-20929: Kerberos Authentication Relay via CNAME Abuse Mar 31, 2026
How Charlotte AI AgentWorks Fuels Security's Agentic Ecosystem Mar 25, 2026
Video Highlights the 4 Key Steps to Successful Incident Response Dec 02, 2019
Helping Non-Security Stakeholders Understand ATT&CK in 10 Minutes or Less [VI
https://github.com/kata-containers/runtime/issues/2712https://github.com/kata-containers/runtime/pull/2713https://github.com/kata-containers/runtime/releases/tag/1.10.5https://github.com/kata-containers/runtime/releases/tag/1.11.1https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2P7FHA4AF6Y6PAVJBTTQPUEHXZQUOF3P/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6JPBKAQBF3OR72N55GWM2TDYQP2OHK6H/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6W5MKF7HSAIL2AX2BX6RV4WWVGUIKVLS/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NJAMOVB7DSOGX7J26QH5HZKU7GSSX2VU/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QNJHSSPCKUGJDVXXIXK2JUWCRJDQX7CE/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XWACJQSMY5BVDMVTF3FBN7HZSOSFOG3Q/https://github.com/kata-containers/runtime/issues/2712https://github.com/kata-containers/runtime/pull/2713https://github.com/kata-containers/runtime/releases/tag/1.10.5https://github.com/kata-containers/runtime/releases/tag/1.11.1https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2P7FHA4AF6Y6PAVJBTTQPUEHXZQUOF3P/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6JPBKAQBF3OR72N55GWM2TDYQP2OHK6H/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6W5MKF7HSAIL2AX2BX6RV4WWVGUIKVLS/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/NJAMOVB7DSOGX7J26QH5HZKU7GSSX2VU/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/QNJHSSPCKUGJDVXXIXK2JUWCRJDQX7CE/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XWACJQSMY5BVDMVTF3FBN7HZSOSFOG3Q/
2020-06-10
Published