📦 Containerd

by Linuxfoundation

🔍 What is Containerd?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-25621

HIGH CVSS 7.3 Nov 6, 2025

Containerd versions before 1.7.29, 2.0.7, 2.1.5, and 2.2.0 create critical directories with overly permissive access controls, allowing group/world read/write access. This vulnerability enables local ...

CVE-2025-47291

HIGH CVSS 7.5 May 21, 2025

A bug in containerd's CRI implementation fails to place usernamespaced containers under Kubernetes' cgroup hierarchy, causing Kubernetes resource limits to be ignored. This can lead to denial of servi...

CVE-2022-23648

HIGH CVSS 7.5 Mar 3, 2022

This vulnerability in containerd allows containers with specially-crafted image configurations to access read-only copies of arbitrary host files and directories. It bypasses container security polici...

CVE-2025-64329

MEDIUM CVSS 5.5 Nov 7, 2025

This CVE describes a memory exhaustion vulnerability in containerd's CRI Attach implementation where goroutine leaks allow users to consume host memory. Affected users are those running vulnerable ver...

CVE-2025-47290

MEDIUM CVSS 5.9 May 20, 2025

A TOCTOU vulnerability in containerd v2.1.0 allows specially crafted container images to modify the host filesystem during image unpacking. Only containerd 2.1.0 is affected, impacting containerized e...

CVE-2024-40635

MEDIUM CVSS 4.6 Mar 17, 2025

A vulnerability in containerd allows containers launched with UID/GID values exceeding 32-bit signed integer limits to overflow and run as root (UID 0) instead of the intended non-root user. This affe...