PT-2026-96069 · Red Hat+1 · Ocp+1
CVE-2026-92574
·
Published
2026-09-21
·
Updated
2026-09-30
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
CRI-O versions 1.34 and later
OCP versions 4.17 and later
Description
A flaw in the checkpoint restore process allows a user to bypass the destination Kubernetes security context when creating a pod from a malicious checkpointed container. The restored process may retain credentials, Linux capabilities,
no new privs, and seccomp state from the checkpoint rather than enforcing the destination configuration, potentially leading to execution with elevated privileges across the container security boundary. Exploitation requires the ability to create a pod from a malicious checkpoint image and for the checkpoint restore functionality to be enabled.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cri-O
Ocp