CVE-2025-2713
EUVD-2025-864428.03.2025, 16:15
Google gVisor's runsc component exhibited a local privilege escalation vulnerability due to incorrect handling of file access permissions, which allowed unprivileged users to access restricted files. This occurred because the process initially ran with root-like permissions until the first fork.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gvisor | 𝑥 < 20240325.0 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration