Skip to content

hotdog CVE-2022-0071

High
arnaldo2792 published GHSA-24hw-r7c6-w5pq Apr 19, 2022

Package

hotdog (bottlerocket)

Affected versions

< 1.7.1

Patched versions

1.7.1

Description

Hotdog, prior to v1.0.2, did not mimic the resource limits, device restrictions, or syscall filters of the target JVM process. This would allow a container to exhaust the resources of the host, modify devices, or make syscalls that would otherwise be blocked.

Severity

High

CVE ID

CVE-2022-0071

Weaknesses

No CWEs