Post #3581276
2026-07-04 14:08 UTC
Podman CVE-2026-44517: A breakout can happen during container build using malicious Containerfile and Git Smart HTTP server or GitHub release tar archive. This is weird, essentially it is a path traversal, which has been fixed in 1.43.2.
Still pulling malicious code into a container, we can agree, is not ideal path traversal or not.
Have not explored the exploitation on this one.
#minimalist #Linux #Selfhosting #selfhosted #selfhost #InfoSec #Exploit
Replies (0)
No replies.