High severity7.8NVD Advisory· Published Oct 6, 2021· Updated Jun 17, 2026
CVE-2021-20264
CVE-2021-20264
Description
An insecure modification flaw in the /etc/passwd file was found in the openjdk-1.8 and openjdk-11 containers. This flaw allows an attacker with access to the container to modify the /etc/passwd and escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:oracle:openjdk:1.8.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:oracle:openjdk:1.8.0:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:openjdk:11:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.