article thumbnail

CVE-2022-0185 in Linux Kernel Can Allow Container Escape in Kubernetes

Aqua Security

Last week, a new high-severity CVE was released that affects the Linux kernel. To do this, the attacker must have a specific Linux capability, CAP_SYS_ADMIN, which reduces the risk of breakout in some container cases.

Linux 145
article thumbnail

Dirty Pipe Linux Vulnerability: Overwriting Files in Container Images

Aqua Security

A new CVE in the Linux kernel was released this week. CVE-2022-0847, aka “Dirty Pipe”, is a vulnerability that allows users on a Linux system to overwrite the contents of files that they can read but shouldn’t be able to write to.

Linux 145
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

Linux Foundation Survey Sees Rise in SBOM Use

DevOps.com

A global survey of 412 organizations published today by the Linux Foundation found nearly half of respondents (47%) producing or consuming software bills of material (SBOMs), and more than three-quarters said they expected to produce or consume them in 2022. SBOMs have become a bigger area of focus in the wake of a series of […].

Linux 127
article thumbnail

DockerCon 2022 Recap: Docker Extensions, Linux, and 10x Engineers

Daniel Bryant

There were a bunch of product launches, such as Docker Extensions, Docker Desktop for Linux, and more. indeed, I was a happy Linux user for many years until I got tempted with the shiny Mac hardware! Until recently, although Docker ran on Linux, you didn’t get quite the same experience as you did on Mac or Windows.

Linux 98
article thumbnail

Microsoft’s March 2025 Patch Tuesday Addresses 56 CVEs (CVE-2025-26633, CVE-2025-24983, CVE-2025-24993)

Tenable

This is the first vulnerability in Windows Fast FAT File System to be reported since 2022 and the first to be exploited in the wild. Prior to this month, Microsoft patched seven vulnerabilities in the Win32 Kernel Subsystem (one in 2022, five in 2024, one earlier in 2025), though CVE-2025-24983 is the first to be exploited in the wild.

Windows 125
article thumbnail

Top 5 Python Frameworks You Must Know in 2022

The Crazy Programmer

CherryPy software supports Linux, Windows, macOS, etc. The post Top 5 Python Frameworks You Must Know in 2022 appeared first on The Crazy Programmer. By having its own server, CherryPy becomes more featured in the end. For instance, it’s great that you can create an application compatible with any operating system. Final Thoughts.

MVC 162
article thumbnail

New Linux Kernel Vulnerability: Escaping Containers by Abusing Cgroups

Aqua Security

CVE-2022-0492, a recently disclosed high-severity Linux vulnerability that relates to a weakness in the handling of release_agent in cgroups, could allow for container escape under some circumstances.

Linux 98