Vulnerability in CRI-O Container Checkpoint Feature Affects Red Hat
CVE-2026-15801

8HIGH

Key Information:

Vendor

Red Hat

Vendor
CVE Published:
21 September 2026

What is CVE-2026-15801?

A vulnerability exists in CRI-O's container checkpoint and restore functionality. This issue arises when the restore feature is improperly configured, allowing users with sufficient permissions to bypass correct validation checks on restore metadata. When successful, an attacker could exploit this to perform unintended operations on the host filesystem by triggering a restoration of containers from potentially untrusted checkpoint content. It is important to note that this vulnerability requires the checkpoint and restore feature to be enabled, which is not the default setting.

References

CVSS V3.1

Score:
8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.