<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d" -->

---
title: Security Vulnerabilities in runC Allow Container Escapes...
description: Multiple security vulnerabilities, known as Leaky Vessels, have been discovered in the runC command line tool used for running containers on Linux platforms.
canonical: https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: Security Vulnerabilities in runC Allow Container Escapes and Host Access | daily.dev
og:description: Multiple security vulnerabilities, known as Leaky Vessels, have been discovered in the runC command line tool used for running containers on Linux platforms.
og:url: https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d
og:image: https://api.daily.dev/og/posts/UE9Mxt72D.png
og:image:alt: Security Vulnerabilities in runC Allow Container Escapes and Host Access
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Security Vulnerabilities in runC Allow Container Escapes and Host Access

**[Collections](https://daily.dev/sources/collections)** · 1 min read · 1 upvotes · 0 comments

## Summary

Multiple security vulnerabilities, known as Leaky Vessels, have been discovered in the runC command line tool used for running containers on Linux platforms.

## Content

Multiple security vulnerabilities, known as Leaky Vessels, have been discovered in the runC command line tool used for running containers on Linux platforms. These vulnerabilities could enable attackers to escape the container and gain access to the underlying host system. Cybersecurity vendor Snyk has disclosed these vulnerabilities and recommends developers to update to the latest version of runC, specifically version 1.1.12, to address these issues. This update will prevent potential container escapes and grant attackers host access.

Leaky Vessels affect various container engine components, with the most urgent vulnerability impacting runC, the container runtime for Docker and other environments.  Snyk has also released open source tools for detecting exploit attempts related to these vulnerabilities.

To mitigate the risks posed by Leaky Vessels, Snyk advises individuals to promptly check for updates from container build and runtime vendors. Upgrading systems as soon as fixes are released is crucial to protecting against potential attacks. It is important to note that no active exploits of these vulnerabilities have been found to date.

## Similar posts on daily.dev

- [Don’t just attend KubeCon \+ CloudNativeCon, Merge Forward your experience\!](https://daily.dev/posts/don-t-just-attend-kubecon-cloudnativecon-merge-forward-your-experience--l0rpp73x8) · CNCF · 1 upvotes · 0 comments
- [Announcing H2 2026 KCDs](https://daily.dev/posts/announcing-h2-2026-kcds-m96goajm1) · CNCF · 1 upvotes · 0 comments
- [Two months of Open Community Groups](https://daily.dev/posts/two-months-of-open-community-groups-asf52zhbs) · CNCF · 0 upvotes · 0 comments
- [CNCF Unveils Schedule for KubeCon \+ CloudNativeCon Europe 2026](https://daily.dev/posts/cncf-unveils-schedule-for-kubecon-cloudnativecon-europe-2026-ikhcoa5cb) · CNCF · 2 upvotes · 0 comments
- [CNCF Debuts KubeCon \+ CloudNativeCon Japan 2026 Schedule](https://daily.dev/posts/cncf-debuts-kubecon-cloudnativecon-japan-2026-schedule-xp5pyudub) · CNCF · 1 upvotes · 0 comments

---

Tags: [#security](https://daily.dev/tags/security), [#cyber](https://daily.dev/tags/cyber), [#containers](https://daily.dev/tags/containers)

[View this post on daily.dev](https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"Security Vulnerabilities in runC Allow Container Escapes and Host Access","url":"https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d"},"datePublished":"2024-01-31T20:43:21.137Z","dateModified":"2024-02-02T20:29:59.050Z","description":"Multiple security vulnerabilities, known as Leaky Vessels, have been discovered in the runC command line tool used for running containers on Linux platforms.","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/0a9758153f666b9284670167680e16fb?_a=AQAEufR","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/0a9758153f666b9284670167680e16fb?_a=AQAEufR","isAccessibleForFree":true,"articleSection":"Collections","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"Collections","logo":"https://media.daily.dev/image/upload/s--fk_6ycEi--/f_auto,q_auto/v1780996001/logos/collections?_a=BAMAMiWQ0","url":"https://daily.dev/sources/collections"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/security-vulnerabilities-in-runc-allow-container-escapes-and-host-access-ue9mxt72d","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":1},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"security,cyber,containers","timeRequired":"PT1M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"Collections","item":"https://daily.dev/sources/collections"},{"@type":"ListItem","position":3,"name":"Security Vulnerabilities in runC Allow Container Escapes and Host Access"}]}
```

