Vulnerability Name:

CVE-2018-10856 (CCN-147905)

Assigned:2018-07-02
Published:2018-07-02
Updated:2019-10-09
Summary:It has been discovered that podman before version 0.6.1 does not drop capabilities when executing a container as a non-root user. This results in unnecessary privileges being granted to the container.
CVSS v3 Severity:8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
7.7 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
8.8 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
7.7 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:6.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
9.0 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-732
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2018-10856

Source: REDHAT
Type: Third Party Advisory
RHSA-2018:2037

Source: CCN
Type: Red Hat Bugzilla – Bug 1592166
(CVE-2018-10856) CVE-2018-10856 podman: Containers run as non-root users do not drop capabilities

Source: CONFIRM
Type: Issue Tracking, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10856

Source: XF
Type: UNKNOWN
podman-cve201810856-priv-esc(147905)

Source: CCN
Type: libpod GIT Repository
Clear all caps, except the bounding set, when --user is specified.

Source: CONFIRM
Type: Patch, Third Party Advisory
https://github.com/projectatomic/libpod/commit/bae80a0b663925ec751ad2784ca32989403cdc24

Vulnerable Configuration:Configuration 1:
  • cpe:/a:libpod_project:libpod:*:*:*:*:*:*:*:* (Version < 0.6.1)

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:201810856
    V
    CVE-2018-10856
    2023-06-22
    oval:org.opensuse.security:def:7862
    P
    podman-4.4.4-150500.1.4 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:607
    P
    Security update for gstreamer-plugins-base (Moderate) (in QA)
    2022-09-12
    oval:org.opensuse.security:def:3247
    P
    libraptor2-0-2.0.10-3.63 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:94877
    P
    podman-3.4.4-150400.2.14 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:1298
    P
    Security update for the Linux Kernel (Important)
    2022-03-30
    oval:org.opensuse.security:def:942
    P
    Security update for strongswan (Important)
    2022-02-18
    oval:org.opensuse.security:def:936
    P
    Security update for glibc (Important)
    2022-02-04
    oval:org.opensuse.security:def:113150
    P
    podman-3.3.1-2.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:70027
    P
    Security update for busybox (Important) (in QA)
    2022-01-14
    oval:org.opensuse.security:def:100704
    P
    (Moderate)
    2021-12-28
    oval:org.opensuse.security:def:1290
    P
    Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3) (Important)
    2021-12-14
    oval:org.opensuse.security:def:93991
    P
    (Moderate)
    2021-12-06
    oval:org.opensuse.security:def:1284
    P
    Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:106578
    P
    podman-3.3.1-2.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:71205
    P
    gtk2-devel-2.24.32-2.27 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:69922
    P
    Security update for dovecot23 (Moderate)
    2021-08-31
    oval:org.opensuse.security:def:48285
    P
    python-numpy-1.8.0-5.8.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47589
    P
    cyrus-sasl-2.1.26-8.7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48127
    P
    libimobiledevice6-1.2.0-7.31 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47143
    P
    radvd-1.9.7-2.12 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48356
    P
    zoo-2.10-1020.56 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47681
    P
    libXpm4-3.5.11-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48189
    P
    libsaml8-2.5.5-3.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47264
    P
    giflib-progs-5.0.5-12.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47829
    P
    mipv6d-2.0.2.umip.0.4-19.63 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47128
    P
    perl-YAML-LibYAML-0.38-10.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48254
    P
    pam-1.1.8-24.27.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47457
    P
    pam-1.1.8-23.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48043
    P
    hyper-v-7-7.5 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47129
    P
    pigz-2.3-5.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:62387
    P
    podman-2.1.1-4.28.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:101131
    P
    podman-2.1.1-4.28.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:71092
    P
    qemu-tools-2.11.1-7.5 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:67752
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15) (Important)
    2021-04-28
    oval:org.opensuse.security:def:64505
    P
    Security update for postgresql, postgresql13 (Moderate)
    2021-01-20
    oval:org.opensuse.security:def:116928
    P
    podman-1.8.0-4.20.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:103504
    P
    podman-1.0.1-2.20 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:89849
    P
    podman-1.0.1-2.20 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107370
    P
    podman-1.8.0-4.20.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62373
    P
    podman-1.0.1-2.20 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:62379
    P
    podman-1.8.0-4.20.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:49329
    P
    shadow on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:67852
    P
    podman on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49383
    P
    podman on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:64418
    P
    mozilla-nspr-32bit on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66579
    P
    openvpn on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73362
    P
    podman on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49323
    P
    rpcbind on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:66671
    P
    podman on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73244
    P
    libwebp7 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49377
    P
    podman on GA media (Moderate)
    2020-12-01
    BACK
    libpod_project libpod *