Thecyberexpress
Critical runC Vulnerabilities Enable Container Escape on Docker and Kubernetes
First seen 2 Dec 2025, 18:33 UTC
•



+4
•37.4
Export
Article Content
Browse articles
Three critical vulnerabilities in runC, tracked as CVE-2025-31133, CVE-2025-52565, and CVE-2025-52881, allow attackers to escape container isolation and gain root access to host systems. These flaws arise from improper handling of masked paths, bind-mounts, and certain write operations. Affected platforms include Docker and Kubernetes, with no active exploits detected yet.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Gainsight Apps Breach Exposes Data of Over 200 Salesforce Customers
AISLE Launches On-Premises AI Vulnerability Scanner for Regulated Enterprises
Critical runC Vulnerabilities Enable Container Escape and Host Compromise
Data Breach Affects Over 200 Companies via Gainsight Integration with Salesforce
Emergence of Agentic AI Raises Governance and Security Challenges
Elastic Addresses Critical Vulnerabilities Enabling File Theft and DoS Attacks