https://seclists.org/oss-sec/2025/q4/161: runc container bakouts via procfs writes: CVE-2025-31133, CVE-2025-52565, and CVE-2025-52881
Published Nov 7, 2025
·Updated
Affected Software
1 affected component
Open Container Initiative runc
Frequently Asked Questions
1
What is the severity of CVE-2025-31133?
CVE-2025-31133 is considered a critical vulnerability due to its potential impact on container security.
2
How do I fix CVE-2025-31133?
To mitigate CVE-2025-31133, update to the latest version of the runc container runtime that addresses this vulnerability.
3
What systems are affected by CVE-2025-31133?
CVE-2025-31133 affects systems using the Open Container Initiative runc version prior to the fixed release.
4
What is the vector of attack for CVE-2025-31133?
CVE-2025-31133 can be exploited via unauthorized writes to procfs, allowing potential container breakout.
5
Are there any known exploits for CVE-2025-31133?
As of now, specific exploit details for CVE-2025-31133 have not been publicly disclosed.