CVE-2021-3101

Published
View on NVD ↗
CVSS v3
8.8
HIGH
CVSS v2
7.2
HIGH
Affected
1
PROJECT

Description

Hotdog, prior to v1.0.1, did not mimic the capabilities or the SELinux label of the target JVM process. This would allow a container to gain full privileges on the host, bypassing restrictions set on the container.

Hotdog is a set of OCI hooks used to inject the Log4j Hot Patch into containers.
GitHubGitHub
42