A denial of service exists in Gvisor Sandbox where a bug in reference counting code in mount point tracking could lead to a panic, making it possible for an attacker running as root and with permission to mount volumes to kill the sandbox. We recommend upgrading past commit 6a112c60a257dadac59962e0bc9e9b5aee70b5b6
History

Tue, 22 Jul 2025 21:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:google:gvisor:*:*:*:*:*:*:*:*

cve-icon MITRE

Status: PUBLISHED

Assigner: Google

Published:

Updated: 2024-08-02T08:57:35.072Z

Reserved: 2024-05-02T11:47:43.153Z

Link: CVE-2023-7258

cve-icon Vulnrichment

Updated: 2024-08-02T08:57:35.072Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-15T17:15:09.987

Modified: 2025-07-22T21:06:27.080

Link: CVE-2023-7258

cve-icon Redhat

No data.