It was discovered that containerd incorrectly handled memory when receiving certain faulty Exec or ExecSync commands. A remote attacker could possibly use this issue to cause a denial of service or crash containerd. (CVE-2022-23471, CVE-2022-31030)
It was discovered that containerd incorrectly set up inheritable file capabilities. An attacker could possibly use this issue to escalate privileges inside a container. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-24769)
It was discovered that containerd incorrectly handled access to encrypted container images when using imgcrypt library. A remote attacker could possibly use this issue to access encrypted images from other users. This issue only affected Ubuntu 18.04 LTS, Ubuntu 20.04 LTS and Ubuntu 22.04 LTS. (CVE-2022-24778)
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1.5.9-0ubuntu1~18.04.2", "binary_name": "containerd" }, { "binary_version": "1.5.9-0ubuntu1~18.04.2", "binary_name": "containerd-dbgsym" }, { "binary_version": "1.5.9-0ubuntu1~18.04.2", "binary_name": "golang-github-containerd-containerd-dev" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1.5.9-0ubuntu1~20.04.6", "binary_name": "containerd" }, { "binary_version": "1.5.9-0ubuntu1~20.04.6", "binary_name": "containerd-dbgsym" }, { "binary_version": "1.5.9-0ubuntu1~20.04.6", "binary_name": "golang-github-containerd-containerd-dev" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1.5.9-0ubuntu3.1", "binary_name": "containerd" }, { "binary_version": "1.5.9-0ubuntu3.1", "binary_name": "containerd-dbgsym" }, { "binary_version": "1.5.9-0ubuntu3.1", "binary_name": "golang-github-containerd-containerd-dev" } ] }