Github.Com Siderolabs Talos vulnerabilities
2 known vulnerabilities affecting github.com/siderolabs_talos.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2024-21626HIGHCVSS 8.6PoC≥ 1.6.0, < 1.6.4≥ 0, < 1.5.62024-02-02
[HIGH] Talos Linux ships runc vulnerable to the escape to the host attack
Talos Linux ships runc vulnerable to the escape to the host attack
### Impact
Snyk has discovered a vulnerability in all versions of runc <=1.1.11, as used by the Docker engine, along with other containerization technologies such as Kubernetes. Exploitation of this issue can result in container escape to the underlying host OS, either through executing a malicious image or building an image using a malicious Dockerfile o
ghsaosv
CVE-2022-39190MEDIUMCVSS 5.5≥ 0, < 1.2.02022-09-16
[MEDIUM] nftables binding to an already bound chain
nftables binding to an already bound chain
### Impact
An issue was discovered in net/netfilter/nf_tables_api.c in the Linux kernel. A denial of service can occur upon binding to an already bound chain.
Affected by this vulnerability is the function nft_verdict_init of the file net/netfilter/nf_tables_api.c. The manipulation with an unknown input leads to a denial of service vulnerability. The program does not release or incorrectly releases a
ghsaosv