CVE-2023-38496
Apptainer is an open source container platform. Version 1.2.0-rc.2 introduced an ineffective privilege drop when requesting container network setup, therefore subsequent functions are called with root privileges, the attack surface is rather limited for users but an attacker could possibly craft a starter config to delete any directory on the host filesystems. A security fix has been included in Apptainer 1.2.1. There is no known workaround outside of upgrading to Apptainer 1.2.1.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.1
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
- EPSS probability
- 0.04%
- CWE
- CWE-271, CWE-269
- Published
- 2023-07-25
- Last modified
- 2026-03-13
Affected products
- apptainer apptainer
Weakness type
Related vulnerabilities
- CVE-2026-44477 — CloudNativePG: Metrics exporter allows privilege escalation to PostgreSQL superuser and OS RCE
- CVE-2026-35535 — In Sudo through 1.9.17p2 before 3e474c2, a failure of a setuid, setgid, or setgroups call, during a...
- CVE-2026-25704 — Incomplete privilege drop for com.system76.CosmicGreeter.GetUserData
- CVE-2025-53819 — Nix's privilege dropping to build user broke for macOS
- CVE-2025-23395 — Local root exploit via `logfile_reopen()` in screen 5.0.0 with setuid-root bit set
- CVE-2024-35179 — Unprivileged Stalwart Mail Server user can read files as root
- CVE-2024-0985 — PostgreSQL non-owner REFRESH MATERIALIZED VIEW CONCURRENTLY executes arbitrary SQL
- CVE-2023-22648 — A Improper Privilege Management vulnerability in SUSE Rancher causes permission changes in Azure AD...