CVE-2026-84042

Published: September 14, 2026Last modified: October 5, 2026

Description

A flaw was found in crun. When crun is built with libkrun and a container is started rootful with passt networking (krun.use_passt), crun can execute attacker-controlled payload from the container image with host root privileges. The issue is a regression in crun 1.29. It affects crun >= 1.29

Severity score breakdown

ParameterValue
Base score7.8
Attack VectorLOCAL
Attack complexityHIGH
Privileges requiredLOW
User interactionNONE
ScopeCHANGED
ConfidentialityHIGH
Integrity impactHIGH
Availability impactHIGH
VectorCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTScrunUnknown (1.7-r0)
25 LTScrunUnknown (1.21-r0)
StreamcrunFixed (1.30.1-r0)

References

ON THIS PAGE