Security Flaw in crun Affects Container Privilege Management by Red Hat
CVE-2026-84042
7.8HIGH
What is CVE-2026-84042?
A vulnerability has been identified in crun, specifically when built with libkrun. This flaw allows an attacker to execute malicious payloads from a container image with root privileges on the host system when the container is started in a rootful mode with passt networking enabled. The issue represents a regression starting from crun version 1.29, necessitating urgent attention to ensure secure container operations and prevent potential exploitation.