GHSA-cm76-qm8v-3j95 · Severity: high · Ecosystem: go — containerd allows host filesystem access on pull
containerd is a container runtime. A time-of-check to time-of-use (TOCTOU) vulnerability was found in containerd v2.1.0. While unpacking an image during an image pull, specially crafted container images could arbitrarily modify the host file system. The only affected version of containerd is 2.1.0. Other versions of containerd are not affected. This bug has been fixed in containerd 2.1.1. Users should update to this version to resolve the issue. As a workaround, ensure that only trusted images are used and that only trusted users have permissions to import images.
Conclusion & alert: CVE-2025-47290 is rated Low Risk (37.2/100): CVSS High severity, with low exploitation likelihood (EPSS 0.06%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-03-16 | 0.01% | 0.06% | +0.05% |
| 2 | 2025-05-21 | — | 0.01% | — |
Full EPSS history (2 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.6 | 4.0 | HIGH |
|
— | — | [email protected] |
| 5.9 | 3.1 | MEDIUM |
|
2.2 | 3.6 | [email protected] |
GHSA-cm76-qm8v-3j95 · Severity: high · Ecosystem: go — containerd allows host filesystem access on pull
| vendor | priority | summary | link |
|---|---|---|---|
alpine
|
— | CVE-2025-47290: 1 source package rows (containerd); 4 state rows across 2 repos (3.22-community, edge-community); fixed 2, open 2. | https://security.alpinelinux.org/vuln/CVE-2025-47290 |
debian
|
unimportant | CVE-2025-47290 unimportant priority: Debian including 1 source packages (containerd), 5 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 5. | https://security-tracker.debian.org/tracker/CVE-2025-47290 |
redhat
|
high | — | https://access.redhat.com/security/cve/CVE-2025-47290 |
suse
|
high | CVE-2025-47290 severity important: SUSE including 12 source package names (containerd, containerd-ctr, …), 83 product×package rows across 49 product lines (Image SL-Micro, Image SL-Micro-Base, … (49 product lines)): Known Not Affected 49, Fixed 34. | https://www.suse.com/security/cve/CVE-2025-47290/ |
ubuntu
|
medium | CVE-2025-47290 medium priority: Ubuntu including 2 source packages (containerd, containerd-app), 14 status rows across 8 suites (bionic, focal, jammy, noble, oracular, plucky, upstream, xenial): not-affected 12, released 2. | https://ubuntu.com/security/CVE-2025-47290 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| linuxfoundation | containerd | 2.1.0 | cpe:2.3:a:linuxfoundation:containerd:2.1.0:*:*:*:*:*:*:* |