Some Docker containers may not be as secure as they’d like, experts warn


  • Three runC errors could allow container escape and host access with administrator privileges
  • Bugs affect Docker/Kubernetes setups using custom mounts and older runC versions
  • Mitigation includes user namespaces and rootless containers to limit exploitation impact

The RunC container runtime used in both Docker and Kubernetes contained three serious vulnerabilities that could be used to gain access to the underlying system, security researchers have warned.

Security researcher Aleksa Sarai disclosed the discovery of CVE-2025-31133, CVE-2025-52565, and CVE-2025-52881, three flaws that, when chained together, allowed access to the underlying container host with administrative privileges.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top