CVE-2024-3154

Published

Severity

CVSS v3:
N/A
CVSS v2:
N/A

Description

A flaw was found in cri-o, where an arbitrary systemd property can be injected via a Pod annotation. Any user who can create a pod with an arbitrary annotation may perform an arbitrary action on the host system.

References

Configurations

CPE23Version StartVersion EndExact Version

External Links