PT-2026-42700 · Unknown+1 · Kubernetes Containerd+2

·

CVE-2026-46680

·

Published

2026-05-21

·

Updated

2026-07-30

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions containerd versions prior to 2.3.1 containerd versions prior to 2.2.4 containerd versions prior to 2.0.9 containerd versions prior to 1.7.32
Description An input validation error exists where containers launched with a numeric User directive that cannot be parsed as a 32-bit integer are incorrectly treated as a username. If a crafted image includes an /etc/passwd file that maps this large numeric string to root, the container runs as root (UID 0). This allows the Kubernetes runAsNonRoot restriction to be bypassed, affecting environments that require containers to run as a non-root user.
Recommendations Update to version 2.3.1. Update to version 2.2.4. Update to version 2.0.9. Update to version 1.7.32. Ensure only trusted images are used and only trusted users have permissions to import images. Enforce a specific numeric runAsUser in the Kubernetes Pod securityContext to override the USER directive in the image.

Exploit

Fix

DoS

Type Confusion

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-91668
BDU:2026-09648
CLEANSTART-2026-AQ98798
CLEANSTART-2026-CL67452
CLEANSTART-2026-CX34942
CLEANSTART-2026-HR38283
CLEANSTART-2026-MW66834
CLEANSTART-2026-OV11554
CVE-2026-46680
GHSA-FQW6-GF59-QR4W
GO-2026-5378
OPENSUSE-SU-2026:11048-1
OPENSUSE-SU-2026:11107-1
OPENSUSE-SU-2026:21072-1
OPENSUSE-SU-2026:21213-1
OPENSUSE-SU-2026:21483-1
RHSA-2026:35111

Affected Products

Kubernetes
Red Os
Kubernetes Containerd