VDB
Sign up
MEDIUM6.1

GHSA-g2j6-57v7-gm8c

runc AppArmor bypass with symlinked /proc

Quick fix

GHSA-g2j6-57v7-gm8c — github.com/opencontainers/runc: upgrade to the fixed version with the command below.

go get github.com/opencontainers/runc@v1.1.5

Details

### Impact It was found that AppArmor, and potentially SELinux, can be bypassed when `/proc` inside the container is symlinked with a specific mount configuration.

### Patches Fixed in runc v1.1.5, by prohibiting symlinked `/proc`: https://github.com/opencontainers/runc/pull/3785

This PR fixes CVE-2023-27561 as well.

### Workarounds Avoid using an untrusted container image.

Are you affected?

Enter the version of the package you're using.

Affected packages

Go/github.com/opencontainers/runc
Introduced in: 0Fixed in: 1.1.5
Fixgo get github.com/opencontainers/runc@v1.1.5

References