Junglewise Threat Intelligence

CVE-2022-2995: GO-2022-1014 - CRI-O incorrect handling of supplementary groups may lead to sensitive information disclosure in github.com/cri-o/cri-o

CVE-2022-2995 · Severity: low · CVSS 3.1 · Published 2024-08-21

Technologies: github.com/cri-o/cri-o (Go). Vendors: Go.

Executive brief

CRI-O incorrect handling of supplementary groups may lead to sensitive information disclosure in github.com/cri-o/cri-o

Affected products

  • Go github.com/cri-o/cri-o

Related threats