Home/Product/linuxfoundation containerd
Product

linuxfoundation containerd

16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-64329
< 1.7.29
containerd is an open-source container runtime. Versions 1.7.28 and below, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 through 2.1.4,
5.5MEDIUM
CVE-2024-25621
< 1.7.29
containerd is an open-source container runtime. Versions 0.1.0 through 1.7.28, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 through 2.
7.3HIGH
CVE-2025-47291
>= 2.0.1 and < 2.0.5
containerd is an open-source container runtime. A bug was found in the containerd's CRI implementation where containerd, starting
7.5HIGH
CVE-2025-47290
all versions
containerd is a container runtime. A time-of-check to time-of-use (TOCTOU) vulnerability was found in containerd v2.1.0. While unp
5.9MEDIUM
CVE-2024-40635
< 1.6.38
containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.4 where co
4.6MEDIUM
CVE-2023-25173
< 1.5.18
containerd is an open source container runtime. A bug was found in containerd prior to versions 1.6.18 and 1.5.18 where supplement
5.3MEDIUM
CVE-2023-25153
< 1.5.18
containerd is an open source container runtime. Before versions 1.6.18 and 1.5.18, when importing an OCI image, there was no limit
6.2MEDIUM
CVE-2022-23471
< 1.5.16
containerd is an open source container runtime. A bug was found in containerd's CRI implementation where a user can exhaust memory
5.7MEDIUM
CVE-2022-31030
< 1.5.13
containerd is an open source container runtime. A bug was found in the containerd's CRI implementation where programs inside a con
5.5MEDIUM
CVE-2022-23648
< 1.4.13
containerd is a container runtime available as a daemon for Linux and Windows. A bug was found in containerd prior to versions 1.6
7.5HIGH
CVE-2021-43816
>= 1.5.1 and < 1.5.9
containerd is an open source container runtime. On installations using SELinux, such as EL8 (CentOS, RHEL), Fedora, or SUSE MicroO
8.0HIGH
CVE-2021-41103
< 1.4.11
containerd is an open source container runtime with an emphasis on simplicity, robustness and portability. A bug was found in cont
7.8HIGH
CVE-2021-32760
< 1.4.8
containerd is a container runtime. A bug was found in containerd versions prior to 1.4.8 and 1.5.4 where pulling and extracting a
5.0MEDIUM
CVE-2021-21334
< 1.3.10
In containerd (an industry-standard container runtime) before versions 1.3.10 and 1.4.4, containers launched through containerd's
6.3MEDIUM
CVE-2020-15257
< 1.3.9
containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd before vers
5.2MEDIUM
CVE-2020-15157
>= 1.2.0 and < 1.2.14
In containerd (an industry-standard container runtime) before version 1.2.14 there is a credential leaking vulnerability. If a con
6.1MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin