CVE Database
/

CVE-2021-20264

Back to search

CVE-2021-20264

Published: Oct 6, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

An insecure modification flaw in the /etc/passwd file was found in the openjdk-1.8 and openjdk-11 containers. This flaw allows an attacker with access to the container to modify the /etc/passwd and escalate their privileges. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

VendorProductVersions

n/a

containers/openjdk

affected
openjdk 1.8

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now