CVE-2019-5736 - CVE House
Back to Database
Status published High CVE-2019-5736

runc through 1.0-rc6, as used in Docker before 18.09.2 and...

Vulnerability Description

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-5736

Credits & Attribution

No credits recorded in the NVD database.

References

Affected Vendor

Affected Software

docker, runc, container development kit, openshift, enterprise linux, enterprise linux server, kubernetes engine, lxc, onesphere, hci management node, solidfire, mesos, backports sle, leap, dc\/os, fedora, ubuntu linux, service management automation
Vulnerable Versions:
0, 1.0.0, 3.7, 3.4, 3.5, 3.6, 8.0, 7.0, 1.4.0, 1.5.0, 1.6.0, 1.7.0, 15.0, 15.1, 42.3, 1.10.11, 1.11.10, 29, 30, 16.04, 18.04, 18.10, 19.04, 2018.02, 2018.05, 2018.08, 2018.11

Timeline

Official Publish: February 11th, 2019
Last Modified: August 4th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.