Hackers Abuse runc Tool to Escape Containers and Compromise Hosts

Three critical vulnerabilities in runc, the widely-used container runtime that powers Docker and Kubernetes, have been disclosed, allowing attackers to break out of container isolation and gain root access to host systems.

The flaws, identified as CVE-2025-31133, CVE-2025-52565, and CVE-2025-52881, were revealed by a SUSE researcher on November 5, 2025.

CVE IDAffected VersionsFixed Versions
CVE-2025-31133All known versions1.2.8, 1.3.3, 1.4.0-rc.3+
CVE-2025-525651.0.0-rc3 and later1.2.8, 1.3.3, 1.4.0-rc.3+
CVE-2025-52881All known versions1.2.8, 1

How the Attack Works

The vulnerabilities exploit weaknesses in how runc handles mount operations and file protections during container creation.

Attackers can leverage race conditions and symbolic link manipulation to bypass security restrictions, ultimately writing to critical system files that enable container escape, as reported by researchers.

vulnerability version

The most likely attack vector involves malicious container images or Dockerfiles containing custom mount configurations.

CVE-2025-31133 targets the maskedPaths feature, which protects sensitive host files from container access.

By replacing /dev/null with a symlink during container creation, attackers can trick runc into mounting arbitrary host paths, allowing writes to critical files like /proc/sys/kernel/core_pattern.

CVE-2025-52565 exploits insufficient validation during the mounting of /dev/pts/$n to /dev/console.

This vulnerability allows attackers to redirect mounts before security protections are applied, gaining unauthorized write access to protected procfs files.

CVE-2025-52881 uses race conditions with shared mounts to redirect runc writes to /proc files.

This bypass allows attackers to manipulate dangerous system files such as /proc/sysrq-trigger, potentially crashing systems or enabling container escape.

Follow us on Google News, LinkedIn, and X to Get Instant Updates and Set GBH as a Preferred Source in Google.

Divya

Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Recent Posts

Insignary Launches Clarity AIR to Detect Undeclared Open-Source and AI-Written Code

Toronto, Canada, October 8th, 2026, CyberNewswire Insignary Launches Clarity AIR: Closing the Blind Spot Between…

3 hours ago

Hackers Hijack Tensorlake Package to Spread Shai-Hulud Supply Chain Malware

A threat actor published a malicious version of the tensorlake npm package on October 8,…

4 hours ago

PoC Exploit Released for Zammad Vulnerability Enabling Session Hijacking and Remote Code Execution

A proof-of-concept (PoC) exploit has been released for CVE-2026-102489, a critical vulnerability in Zammad that…

4 hours ago

Critical LMCache RCE Vulnerability Remains Unpatched, Public PoC Exploit Available

A critical vulnerability in LMCache allows unauthenticated attackers to execute arbitrary code against reachable multi-process…

5 hours ago

16 Malicious Firefox Extensions Impersonate Crypto Wallets to Steal Seed Phrases and Private Keys

16 malicious Firefox extensions that impersonate cryptocurrency wallets to intercept recovery phrases and private keys…

6 hours ago

Exposed DarkSword iOS Servers Reveal Crypto Wallet Theft From Compromised iPhones

Exposed directories on five servers have revealed an operational DarkSword/Coruna exploitation platform built to compromise…

6 hours ago