runc / libcontainer Bind Mount Sources Insecure Handling

The recent commit #9c4440 introduces two vulnerabilities to libcontainer that can be exploited by an attacker with partial control over the bind mount sources of a new container.

Leave a Reply