PT-2026-98317 · Unknown+1 · Kubernetes Containerd

CVE-2026-53493

·

Published

2026-09-24

·

Updated

2026-09-28

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions containerd versions prior to 1.7.36 containerd versions prior to 2.0.13 containerd versions prior to 2.2.9 containerd versions prior to 2.3.6 containerd versions prior to 2.4.1
Description A crafted OCI index graph can cause excessive CPU and memory consumption during the PullImage process before a container starts. This leads to extended ContainerCreating stalls and can result in node or runtime instability when processing larger graphs.
Recommendations Update to version 1.7.36 Update to version 2.0.13 Update to version 2.2.9 Update to version 2.3.6 Update to version 2.4.1

Exploit

Fix

DoS

Allocation of Resources Without Limits

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-53493
GHSA-PG57-6JWG-Q645

Affected Products

Kubernetes Containerd