CVE-2023-29017
vm2 Sandbox Escape vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
4Exploited in Wild
-Decision
Descriptions
vm2 is a sandbox that can run untrusted code with whitelisted Node's built-in modules. Prior to version 3.9.15, vm2 was not properly handling host objects passed to `Error.prepareStackTrace` in case of unhandled async errors. A threat actor could bypass the sandbox protections to gain remote code execution rights on the host running the sandbox. This vulnerability was patched in the release of version 3.9.15 of vm2. There are no known workarounds.
A flaw was found in vm2 where the component was not properly handling asynchronous errors. This flaw allows a remote, unauthenticated attacker to escape the restrictions of the sandbox and execute code on the host.
Multicluster Engine for Kubernetes 2.2.3 images Multicluster engine for Kubernetes provides the foundational components that are necessary for the centralized management of multiple Kubernetes-based clusters across data centers, public clouds, and private clouds. You can use the engine to create new Red Hat OpenShift Container Platform clusters or to bring existing Kubernetes-based clusters under management by importing them. After the clusters are managed, you can use the APIs that are provided by the engine to distribute configuration based on placement policy. Issues addressed include a denial of service vulnerability.
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2023-03-29 CVE Reserved
- 2023-04-06 CVE Published
- 2023-04-06 First Exploit
- 2025-02-10 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-755: Improper Handling of Exceptional Conditions
- CWE-913: Improper Control of Dynamically-Managed Code Resources
CAPEC
References (8)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://github.com/timb-machine-mirrors/seongil-wi-CVE-2023-29017 | 2023-04-06 | |
https://github.com/passwa11/CVE-2023-29017-reverse-shell | 2023-04-10 | |
https://gist.github.com/seongil-wi/2a44e082001b959bfe304b62121fb76d | 2025-02-10 | |
https://github.com/patriksimek/vm2/issues/515 | 2025-02-10 |
URL | Date | SRC |
---|---|---|
https://github.com/patriksimek/vm2/commit/d534e5785f38307b70d3aac1945260a261a94d50 | 2023-04-13 |
URL | Date | SRC |
---|---|---|
https://github.com/patriksimek/vm2/security/advisories/GHSA-7jxr-cg7f-gpgv | 2023-04-13 | |
https://access.redhat.com/security/cve/CVE-2023-29017 | 2023-04-20 | |
https://bugzilla.redhat.com/show_bug.cgi?id=2185374 | 2023-04-20 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Vm2 Project Search vendor "Vm2 Project" | Vm2 Search vendor "Vm2 Project" for product "Vm2" | < 3.9.15 Search vendor "Vm2 Project" for product "Vm2" and version " < 3.9.15" | node.js |
Affected
|