CVE-2021-33634: Malicious image running containers may cause DoS attacks
iSulad uses the lcr+lxc runtime (default) to run malicious images, which can cause DOS.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-33634?
CVE-2021-33634 is a vulnerability in iSulad that allows malicious images to cause Denial-of-Service (DoS) attacks.
How does CVE-2021-33634 impact OpenEuler Icr?
CVE-2021-33634 affects OpenEuler Icr versions up to 2.0.9-6 and versions between 2.1.0 and 2.1.2-3, allowing malicious images to cause DoS attacks.
What is the severity of CVE-2021-33634?
CVE-2021-33634 has a severity rating of 6.3 (Medium).
How can I fix CVE-2021-33634?
To fix CVE-2021-33634, it is recommended to update to a version of OpenEuler Icr that is not affected by the vulnerability.
Where can I find more information about CVE-2021-33634?
You can find more information about CVE-2021-33634 in the OpenEuler security bulletins: [Link 1](https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2023-1692), [Link 2](https://gitee.com/src-openeuler/lcr/pulls/251/files), [Link 3](https://gitee.com/src-openeuler/lcr/pulls/257/files).