Database/Container, Kubernetes & orchestration
Podman: TOCTOU during volume export lets a symlink swap expose arbitrary host files
CVE-2023-0778Container, Kubernetes & orchestrationcurated
Impact
TOCTOU during volume export lets a symlink swap expose arbitrary host files
Who can reach it
Any tenant workload with volume access
What to do
Upgrade Podman
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.