Summary
Detail | |||
---|---|---|---|
Vendor | Hotdog Project | First view | 2022-04-19 |
Product | Hotdog | Last view | 2022-04-19 |
Version | Type | Application | |
Update | |||
Edition | |||
Language | |||
Sofware Edition | |||
Target Software | |||
Target Hardware | |||
Other |
Activity : Overall
COMMON PLATFORM ENUMERATION: Repartition per Version
CPE Name | Affected CVE |
---|---|
cpe:2.3:a:hotdog_project:hotdog:*:*:*:*:*:java:*:* | 2 |
Related : CVE
Date | Alert | Description | |
---|---|---|---|
8.8 | 2022-04-19 | CVE-2022-0071 | Incomplete fix for CVE-2021-3101. Hotdog, prior to v1.0.2, did not mimic the resource limits, device restrictions, or syscall filters of the target JVM process. This would allow a container to exhaust the resources of the host, modify devices, or make syscalls that would otherwise be blocked. |
8.8 | 2022-04-19 | CVE-2021-3101 | Hotdog, prior to v1.0.1, did not mimic the capabilities or the SELinux label of the target JVM process. This would allow a container to gain full privileges on the host, bypassing restrictions set on the container. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
100% (2) | CWE-269 | Improper Privilege Management |