Red HatCVE-2026-62146
A trust-boundary flaw in CRI-O's sandbox state persistence
High7.8CVE-2026-62146 · Published Sep 30, 2026
A trust-boundary flaw in CRI-O's sandbox state persistence allows attacker-influenced pod metadata to overwrite CRI-O's own reserved sandbox bookkeeping; once reloaded as trusted after a restart, a later container recreate in that sandbox can expose a host-side runtime-management resource inside the container, enabling container escape.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Red Hat OpenShift Container Platform 4 Product | all versions | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-501
More Red Hat advisories
All Red Hat| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 30 | Red Hat Enterprise Linux: request smuggling | Medium5.3 | No fix yet |
| Sep 30 | Assisted Installer for Red Hat OpenShift Container Platform : path traversal | High7.3 | No fix yet |
| Sep 30 | Red Hat rpm. RPMTAG_FILESIGNATURES: heap buffer overflow | High7.1 | No fix yet |
| Sep 29 | Red Hat libsoup.: buffer overflow | High8.6 | No fix yet |
| Sep 29 | Red Hat libsoup.: buffer overflow | High8.6 | No fix yet |
| Sep 29 | Red Hat libsoup.: buffer overflow | High8.6 | No fix yet |