Search CVE reports


Toggle filters

1 – 3 of 3 results


CVE-2025-47291

Medium priority
Vulnerable

containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting in version 2.0.1 and prior to version 2.0.5, doesn't put usernamespaced containers under...

2 affected packages

containerd, containerd-app

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Not affected Not affected Not affected Not affected
containerd-app Not affected Not affected Not affected
Show less packages

CVE-2025-47290

Medium priority
Not affected

containerd is a container runtime. A time-of-check to time-of-use (TOCTOU) vulnerability was found in containerd v2.1.0. While unpacking an image during an image pull, specially crafted container images could arbitrarily modify...

2 affected packages

containerd, containerd-app

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Not affected Not affected Not affected Not affected
containerd-app Not affected Not affected Not affected
Show less packages

CVE-2024-40635

Medium priority

Some fixes available 10 of 12

containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.4 where containers launched with a User set as a `UID:GID` larger than the maximum 32-bit signed integer can...

2 affected packages

containerd, containerd-app

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
containerd Fixed Fixed Fixed Fixed
containerd-app Fixed Fixed Fixed
Show less packages