Container Platform Vulnerability in Apptainer Affecting Security Options
CVE-2025-65105

4.5MEDIUM

Key Information:

Vendor

Apptainer

Status
Vendor
CVE Published:
2 December 2025

What is CVE-2025-65105?

The vulnerability in Apptainer allows containers to bypass security restrictions associated with the --security option, particularly affecting AppArmor and SELinux profiles. This misconfiguration can enable unprivileged users to perform operations that should be restricted, potentially compromising system security. The issue affects Apptainer versions before 1.4.5 and has been resolved in the latest release, emphasizing the importance of immediate updates for users utilizing the platform.

Affected Version(s)

apptainer < 1.4.5

References

CVSS V3.1

Score:
4.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.