Vulnerability in CRI-O Container Checkpoint Feature Affects Red Hat
CVE-2026-15801
8HIGH
What is CVE-2026-15801?
A vulnerability exists in CRI-O's container checkpoint and restore functionality. This issue arises when the restore feature is improperly configured, allowing users with sufficient permissions to bypass correct validation checks on restore metadata. When successful, an attacker could exploit this to perform unintended operations on the host filesystem by triggering a restoration of containers from potentially untrusted checkpoint content. It is important to note that this vulnerability requires the checkpoint and restore feature to be enabled, which is not the default setting.