FlawAtlas
Search the atlas
CVE-2019-10152 High

Podman Path Traversal Vulnerability leads to arbitrary file read/write in github.com/containers/podman

Podman Path Traversal Vulnerability leads to arbitrary file read/write in github.com/containers/podman

Exploit probability 0.5%
Published August 20, 2024
Required by Not available
Last source change March 3, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

3 explicit affected versions

Go github.com/containers/podman
Go github.com/containers/podman

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2019-10152

A path traversal vulnerability has been discovered in podman before version 1.4.0 in the way it handles symlinks inside containers. An attacker who has compromised an existing container can cause arbitrary files on the host filesystem to be read/written when an administrator tries to copy a file from/to the container.

View original source
Open Source Vulnerabilities GO-2023-1927

Podman Path Traversal Vulnerability leads to arbitrary file read/write in github.com/containers/podman

View original source
Open Source Vulnerabilities GHSA-rh5f-2w6r-q7vj

A path traversal vulnerability has been discovered in podman before version 1.4.0 in the way it handles symlinks inside containers. An attacker who has compromised an existing container can cause arbitrary files on the host filesystem to be read/written when an administrator tries to copy a file from/to the container.

View original source

05 / REFERENCES

Further evidence