Gvisor
This hub aggregates every CVE we track for Gvisor. Use it to gauge the current risk picture and drill into individual advisories.
other
8
CVEs tracked
1
Critical
1
High
0
In CISA KEV
Severity distribution
MEDIUM5HIGH1CRITICAL1
Monthly trend
0
0
0
2
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
2024-102026-09
Latest CVEs
The 8 most recently published vulnerabilities affecting Gvisor.
- CVE-2026-96812Host Root Sandbox Escape in gVisor via Character Device Passthrough and CUSE
- CVE-2025-2713Improper File Permission Handling in Google gVisor runsc7.8
- CVE-2024-10603Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be predicted by an external attacker in some circumstances.5.3
- CVE-2024-10026Improved Seeding and Hashing In gVisor5.3
- CVE-2023-7258Denial-of-Service in Gvisor4.8
- CVE-2018-20168Google gVisor before 2018-08-22 reuses a pagetable in a different level with the paging-structure cache intact, which allows attackers to cause a denial of service ("physical address not valid" pan...5.5
- CVE-2018-19333pkg/sentry/kernel/shm/shm.go in Google gVisor before 2018-11-01 allows attackers to overwrite memory locations in processes running as root (but not escape the sandbox) via vectors involving IPC_RM...9.8
- CVE-2018-16359Google gVisor before 2018-08-23, within the seccomp sandbox, permits access to the renameat system call, which allows attackers to rename files on the host OS.6.8
Product normalization is registry-driven with AI assist and human review. How it works