VYPR

apk package

wolfi/ctop

pkg:apk/wolfi/ctop

Vulnerabilities (107)

  • CVE-2022-24769MedMar 24, 2022
    affected < 0.7.7-r13fixed 0.7.7-r13

    Moby is an open-source project created by Docker to enable and accelerate software containerization. A bug was found in Moby (Docker Engine) prior to version 20.10.14 where containers were incorrectly started with non-empty inheritable Linux process capabilities, creating an atyp

  • CVE-2022-23648HigMar 3, 2022
    affected < 0.7.7-r13fixed 0.7.7-r13

    containerd is a container runtime available as a daemon for Linux and Windows. A bug was found in containerd prior to versions 1.6.1, 1.5.10, and 1.14.12 where containers launched through containerd’s CRI implementation on Linux with a specially-crafted image configuration could

  • CVE-2021-41103HigOct 4, 2021
    affected < 0.7.7-r13fixed 0.7.7-r13

    containerd is an open source container runtime with an emphasis on simplicity, robustness and portability. A bug was found in containerd where container root directories and some plugins had insufficiently restricted permissions, allowing otherwise unprivileged Linux users to tra

  • CVE-2021-32760MedJul 19, 2021
    affected < 0.7.7-r13fixed 0.7.7-r13

    containerd is a container runtime. A bug was found in containerd versions prior to 1.4.8 and 1.5.4 where pulling and extracting a specially-crafted container image can result in Unix file permission changes for existing files in the host’s filesystem. Changes to file permissions

  • CVE-2021-21334MedMar 10, 2021
    affected < 0.7.7-r13fixed 0.7.7-r13

    In containerd (an industry-standard container runtime) before versions 1.3.10 and 1.4.4, containers launched through containerd's CRI implementation (through Kubernetes, crictl, or any other pod/container client that uses the containerd CRI service) that share the same image may

  • CVE-2021-3121HigJan 11, 2021
    affected < 0.7.7-r13fixed 0.7.7-r13

    An issue was discovered in GoGo Protobuf before 1.3.2. plugin/unmarshal/unmarshal.go lacks certain index validation, aka the "skippy peanut butter" issue.

  • CVE-2020-15257MedDec 1, 2020
    affected < 0.7.7-r13fixed 0.7.7-r13

    containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd before versions 1.3.9 and 1.4.3, the containerd-shim API is improperly exposed to host network containers. Access controls for the shim’s API socket verified tha

Page 6 of 6