CVE-2019-25067: Podman/Varlink API Privilege Escalation
A vulnerability, which was classified as critical, was found in Podman and Varlink 1.5.1. This affects an unknown part of the component API. The manipulation leads to Privilege Escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Other sources
A vulnerability, which was classified as critical, was found in Podman and Varlink 1.5.1. This affects an unknown part of the component API. The manipulation leads to Remote Privilege Escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-143949 was assigned to this vulnerability.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-25067?
The severity of CVE-2019-25067 is classified as critical.
What software is affected by CVE-2019-25067?
Podman 1.5.1 and Varlink 1.5.1 are affected by CVE-2019-25067.
What is the vulnerability type of CVE-2019-25067?
CVE-2019-25067 is classified as a Privilege Escalation vulnerability.
Can the attack be initiated remotely?
Yes, the attack can be initiated remotely.
How severe is the vulnerability?
The severity of CVE-2019-25067 is high, with a CVSS score of 8.8.