Sign in
Sign up
Explore
Enterprise
Education
Search
Help
Terms of use
About Us
Explore
Enterprise
Education
Gitee Premium
Gitee AI
AI teammates
Sign in
Sign up
Fetch the repository succeeded.
description of repo status
Donate
Please sign in before you donate.
Cancel
Sign in
Scan WeChat QR to Pay
Cancel
Complete
Prompt
Switch to Alipay.
OK
Cancel
Watch
Unwatch
Watching
Releases Only
Ignoring
9
Star
0
Fork
9
src-openEuler
/
containers-common
Closed
Code
Issues
12
Pull Requests
0
Wiki
Insights
Pipelines
Service
JavaDoc
PHPDoc
Quality Analysis
Jenkins for Gitee
Tencent CloudBase
Tencent Cloud Serverless
悬镜安全
Aliyun SAE
Codeblitz
SBOM
DevLens
Don’t show this again
Update failed. Please try again later!
Remove this flag
Content Risk Flag
This task is identified by
as the content contains sensitive information such as code security bugs, privacy leaks, etc., so it is only accessible to contributors of this repository.
CVE-2024-21626
Declined
#IC9N4K
CVE和安全问题
openeuler-ci-bot
owner
Opened this issue
2025-05-22 11:46
一、漏洞信息 漏洞编号:[CVE-2024-21626](https://nvd.nist.gov/vuln/detail/CVE-2024-21626) 漏洞归属组件:[containers-common](https://gitee.com/src-openeuler/containers-common) 漏洞归属的版本:1 CVSS V3.0分值: BaseScore:8.6 High Vector:CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H 漏洞简述: runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal file descriptor leak, an attacker could cause a newly-spawned container process (from runc exec) to have a working directory in the host filesystem namespace, allowing for a container escape by giving access to the host filesystem ( attack 2 ). The same attack could be used by a malicious image to allow a container process to gain access to the host filesystem through runc run ( attack 1 ). Variants of attacks 1 and 2 could be also be used to overwrite semi-arbitrary host binaries, allowing for complete container escapes ( attack 3a and attack 3b ). runc 1.1.12 includes patches for this issue. 漏洞公开时间:2024-02-01 06:15:53 漏洞创建时间:2025-05-22 11:46:20 漏洞详情参考链接: https://nvd.nist.gov/vuln/detail/CVE-2024-21626 <details> <summary>更多参考(点击展开)</summary> | 参考来源 | 参考链接 | 来源链接 | | ------- | -------- | -------- | | security-advisories.github.com | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | | | security-advisories.github.com | http://www.openwall.com/lists/oss-security/2024/02/01/1 | | | security-advisories.github.com | http://www.openwall.com/lists/oss-security/2024/02/02/3 | | | security-advisories.github.com | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | | security-advisories.github.com | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | | | security-advisories.github.com | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | | security-advisories.github.com | https://lists.debian.org/debian-lts-announce/2024/02/msg00005.html | | | security-advisories.github.com | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2NLXNE23Q5ESQUAI22Z7A63JX2WMPJ2J/ | | | security-advisories.github.com | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0670 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0717 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0756 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0748 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0752 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0755 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0760 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0757 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0759 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0758 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0682 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0662 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0684 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0645 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0666 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0764 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2023:7201 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:1270 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:4597 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10149 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10520 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10525 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10841 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:0115 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:0650 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:1711 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:2441 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:2710 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:2701 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | debian | | https://security-tracker.debian.org/tracker/CVE-2024-21626 | | oracle | | https://www.oracle.com/security-alerts/cpuapr2024.html | | gentoo | | https://security.gentoo.org/glsa/202408-25 | | anolis | | https://anas.openanolis.cn/cves/detail/CVE-2024-21626 | | cve_search | | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | cve_search | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | cve_search | | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | | cve_search | | http://www.openwall.com/lists/oss-security/2024/02/01/1 | | cve_search | | http://www.openwall.com/lists/oss-security/2024/02/02/3 | | cve_search | | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | | cve_search | | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | | cve_search | | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2NLXNE23Q5ESQUAI22Z7A63JX2WMPJ2J/ | | cve_search | | https://lists.debian.org/debian-lts-announce/2024/02/msg00005.html | | github_advisory | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | https://github.com/advisories/GHSA-xr7r-f8xq-vfvv | | github_advisory | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://github.com/advisories/GHSA-xr7r-f8xq-vfvv | | github_advisory | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://github.com/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://www.cve.org/CVERecord?id=CVE-2024-21626 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/7362cd5afe9d40131fb62cb075092025c7c71064 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/2ed79a6c91e56dcd2d1da47f8ffd663066153746 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/b2b5754eb34174e032f1048beb1b27db83e77c5a | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/996a33c0e468435c70a34a25be1cb023d7554563 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/f3429eda1a8d478d7dbcb9c07cef943d88e67671 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/4f263985016276c2faf709e9db98fcc8677a8a13 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | go | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | https://github.com/golang/vulndb/blob/master/reports/GO-2024-2491.yaml | | go | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://github.com/golang/vulndb/blob/master/reports/GO-2024-2491.yaml | | go | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | https://github.com/golang/vulndb/blob/master/reports/GO-2024-2491.yaml | | osv | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | http://www.openwall.com/lists/oss-security/2024/02/01/1 | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | http://www.openwall.com/lists/oss-security/2024/02/02/3 | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2NLXNE23Q5ESQUAI22Z7A63JX2WMPJ2J/ | https://osv.dev/vulnerability/CVE-2024-21626 | | aliyun | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://cert.360.cn/warning/detail?id=65bb589cc09f255b91b17d32 | | amazon_linux_explore | https://access.redhat.com/security/cve/CVE-2024-21626 | https://explore.alas.aws.amazon.com/CVE-2024-21626.html | | amazon_linux_explore | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-21626 | https://explore.alas.aws.amazon.com/CVE-2024-21626.html | | snyk | https://aws.amazon.com/security/security-bulletins/AWS-2024-001/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://cloud.google.com/support/bulletins#gcp-2024-005 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/containers/youki/releases/tag/v0.3.2 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://www.openwall.com/lists/oss-security/2024/01/31/6 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://snyk.io/blog/cve-2024-21626-runc-process-cwd-container-breakout/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://aws.amazon.com/security/security-bulletins/AWS-2024-001/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://cloud.google.com/support/bulletins#gcp-2024-005 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/containers/youki/releases/tag/v0.3.2 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://www.openwall.com/lists/oss-security/2024/01/31/6 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://snyk.io/blog/cve-2024-21626-runc-process-cwd-container-breakout/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://aws.amazon.com/security/security-bulletins/AWS-2024-001/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://cloud.google.com/support/bulletins#gcp-2024-005 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/containers/youki/releases/tag/v0.3.2 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://www.openwall.com/lists/oss-security/2024/01/31/6 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://snyk.io/blog/cve-2024-21626-runc-process-cwd-container-breakout/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | </details> 漏洞分析指导链接: https://gitee.com/openeuler/cve-manager/blob/master/cve-vulner-manager/doc/md/manual.md 漏洞数据来源: openBrain开源漏洞感知系统 漏洞补丁信息: <details> <summary>详情(点击展开)</summary> | 影响的包 | 修复版本 | 修复补丁 | 问题引入补丁 | 来源 | | ------- | -------- | ------- | -------- | --------- | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | security-advisories.github.com | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | github_advisory | | | | https://github.com/opencontainers/runc/commit/7362cd5afe9d40131fb62cb075092025c7c71064 | | runc | | | | https://github.com/opencontainers/runc/commit/2ed79a6c91e56dcd2d1da47f8ffd663066153746 | | runc | | | | https://github.com/opencontainers/runc/commit/b2b5754eb34174e032f1048beb1b27db83e77c5a | | runc | | | | https://github.com/opencontainers/runc/commit/996a33c0e468435c70a34a25be1cb023d7554563 | | runc | | | | https://github.com/opencontainers/runc/commit/f3429eda1a8d478d7dbcb9c07cef943d88e67671 | | runc | | | | https://github.com/opencontainers/runc/commit/4f263985016276c2faf709e9db98fcc8677a8a13 | | runc | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | go | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | osv | | | | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | | snyk | | | | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | | snyk | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | snyk | | | | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | | nvd | | | | http://www.openwall.com/lists/oss-security/2024/02/01/1 | | nvd | | | | http://www.openwall.com/lists/oss-security/2024/02/02/3 | | nvd | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | nvd | | | | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | | nvd | | | | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | nvd | | | | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | | nvd | </details> 二、漏洞分析结构反馈 影响性分析说明: openEuler评分: 受影响版本排查(受影响/不受影响): 1.master(1): 2.openEuler-20.03-LTS-SP4: 3.openEuler-22.03-LTS-SP3(1): 4.openEuler-22.03-LTS-SP4(1): 5.openEuler-24.03-LTS(1): 6.openEuler-24.03-LTS-Next(1): 7.openEuler-24.03-LTS-SP1(1): 8.openEuler-24.03-LTS-SP2(1): 修复是否涉及abi变化(是/否): 1.master(1): 2.openEuler-20.03-LTS-SP4: 3.openEuler-22.03-LTS-SP3(1): 4.openEuler-22.03-LTS-SP4(1): 5.openEuler-24.03-LTS(1): 6.openEuler-24.03-LTS-Next(1): 7.openEuler-24.03-LTS-SP1(1): 8.openEuler-24.03-LTS-SP2(1): 原因说明: 1.master(1): 2.openEuler-20.03-LTS-SP4: 3.openEuler-22.03-LTS-SP3(1): 4.openEuler-22.03-LTS-SP4(1): 5.openEuler-24.03-LTS(1): 6.openEuler-24.03-LTS-Next(1): 7.openEuler-24.03-LTS-SP1(1): 8.openEuler-24.03-LTS-SP2(1):
一、漏洞信息 漏洞编号:[CVE-2024-21626](https://nvd.nist.gov/vuln/detail/CVE-2024-21626) 漏洞归属组件:[containers-common](https://gitee.com/src-openeuler/containers-common) 漏洞归属的版本:1 CVSS V3.0分值: BaseScore:8.6 High Vector:CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H 漏洞简述: runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and earlier, due to an internal file descriptor leak, an attacker could cause a newly-spawned container process (from runc exec) to have a working directory in the host filesystem namespace, allowing for a container escape by giving access to the host filesystem ( attack 2 ). The same attack could be used by a malicious image to allow a container process to gain access to the host filesystem through runc run ( attack 1 ). Variants of attacks 1 and 2 could be also be used to overwrite semi-arbitrary host binaries, allowing for complete container escapes ( attack 3a and attack 3b ). runc 1.1.12 includes patches for this issue. 漏洞公开时间:2024-02-01 06:15:53 漏洞创建时间:2025-05-22 11:46:20 漏洞详情参考链接: https://nvd.nist.gov/vuln/detail/CVE-2024-21626 <details> <summary>更多参考(点击展开)</summary> | 参考来源 | 参考链接 | 来源链接 | | ------- | -------- | -------- | | security-advisories.github.com | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | | | security-advisories.github.com | http://www.openwall.com/lists/oss-security/2024/02/01/1 | | | security-advisories.github.com | http://www.openwall.com/lists/oss-security/2024/02/02/3 | | | security-advisories.github.com | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | | security-advisories.github.com | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | | | security-advisories.github.com | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | | security-advisories.github.com | https://lists.debian.org/debian-lts-announce/2024/02/msg00005.html | | | security-advisories.github.com | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2NLXNE23Q5ESQUAI22Z7A63JX2WMPJ2J/ | | | security-advisories.github.com | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0670 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0717 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0756 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0748 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0752 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0755 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0760 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0757 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0759 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0758 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0682 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0662 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0684 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0645 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0666 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:0764 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2023:7201 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:1270 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:4597 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10149 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10520 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10525 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2024:10841 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:0115 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:0650 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:1711 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:2441 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:2710 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | redhat_bugzilla | https://access.redhat.com/errata/RHSA-2025:2701 | https://bugzilla.redhat.com/show_bug.cgi?id=2258725 | | debian | | https://security-tracker.debian.org/tracker/CVE-2024-21626 | | oracle | | https://www.oracle.com/security-alerts/cpuapr2024.html | | gentoo | | https://security.gentoo.org/glsa/202408-25 | | anolis | | https://anas.openanolis.cn/cves/detail/CVE-2024-21626 | | cve_search | | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | cve_search | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | cve_search | | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | | cve_search | | http://www.openwall.com/lists/oss-security/2024/02/01/1 | | cve_search | | http://www.openwall.com/lists/oss-security/2024/02/02/3 | | cve_search | | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | | cve_search | | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | | cve_search | | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2NLXNE23Q5ESQUAI22Z7A63JX2WMPJ2J/ | | cve_search | | https://lists.debian.org/debian-lts-announce/2024/02/msg00005.html | | github_advisory | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | https://github.com/advisories/GHSA-xr7r-f8xq-vfvv | | github_advisory | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://github.com/advisories/GHSA-xr7r-f8xq-vfvv | | github_advisory | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://github.com/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://www.cve.org/CVERecord?id=CVE-2024-21626 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/7362cd5afe9d40131fb62cb075092025c7c71064 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/2ed79a6c91e56dcd2d1da47f8ffd663066153746 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/b2b5754eb34174e032f1048beb1b27db83e77c5a | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/996a33c0e468435c70a34a25be1cb023d7554563 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/f3429eda1a8d478d7dbcb9c07cef943d88e67671 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | runc | https://github.com/opencontainers/runc/commit/4f263985016276c2faf709e9db98fcc8677a8a13 | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | go | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | https://github.com/golang/vulndb/blob/master/reports/GO-2024-2491.yaml | | go | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://github.com/golang/vulndb/blob/master/reports/GO-2024-2491.yaml | | go | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | https://github.com/golang/vulndb/blob/master/reports/GO-2024-2491.yaml | | osv | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | http://www.openwall.com/lists/oss-security/2024/02/01/1 | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | http://www.openwall.com/lists/oss-security/2024/02/02/3 | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://osv.dev/vulnerability/CVE-2024-21626 | | osv | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2NLXNE23Q5ESQUAI22Z7A63JX2WMPJ2J/ | https://osv.dev/vulnerability/CVE-2024-21626 | | aliyun | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | https://cert.360.cn/warning/detail?id=65bb589cc09f255b91b17d32 | | amazon_linux_explore | https://access.redhat.com/security/cve/CVE-2024-21626 | https://explore.alas.aws.amazon.com/CVE-2024-21626.html | | amazon_linux_explore | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-21626 | https://explore.alas.aws.amazon.com/CVE-2024-21626.html | | snyk | https://aws.amazon.com/security/security-bulletins/AWS-2024-001/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://cloud.google.com/support/bulletins#gcp-2024-005 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://github.com/containers/youki/releases/tag/v0.3.2 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://www.openwall.com/lists/oss-security/2024/01/31/6 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://snyk.io/blog/cve-2024-21626-runc-process-cwd-container-breakout/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERDV2-6219725 | | snyk | https://aws.amazon.com/security/security-bulletins/AWS-2024-001/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://cloud.google.com/support/bulletins#gcp-2024-005 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://github.com/containers/youki/releases/tag/v0.3.2 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://www.openwall.com/lists/oss-security/2024/01/31/6 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://snyk.io/blog/cve-2024-21626-runc-process-cwd-container-breakout/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERDCONTAINERD-6219724 | | snyk | https://aws.amazon.com/security/security-bulletins/AWS-2024-001/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://cloud.google.com/support/bulletins#gcp-2024-005 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://github.com/containers/youki/releases/tag/v0.3.2 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://www.openwall.com/lists/oss-security/2024/01/31/6 | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | | snyk | https://snyk.io/blog/cve-2024-21626-runc-process-cwd-container-breakout/ | https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMOPENCONTAINERSRUNCLIBCONTAINERINTEGRATION-6209336 | </details> 漏洞分析指导链接: https://gitee.com/openeuler/cve-manager/blob/master/cve-vulner-manager/doc/md/manual.md 漏洞数据来源: openBrain开源漏洞感知系统 漏洞补丁信息: <details> <summary>详情(点击展开)</summary> | 影响的包 | 修复版本 | 修复补丁 | 问题引入补丁 | 来源 | | ------- | -------- | ------- | -------- | --------- | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | security-advisories.github.com | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | github_advisory | | | | https://github.com/opencontainers/runc/commit/7362cd5afe9d40131fb62cb075092025c7c71064 | | runc | | | | https://github.com/opencontainers/runc/commit/2ed79a6c91e56dcd2d1da47f8ffd663066153746 | | runc | | | | https://github.com/opencontainers/runc/commit/b2b5754eb34174e032f1048beb1b27db83e77c5a | | runc | | | | https://github.com/opencontainers/runc/commit/996a33c0e468435c70a34a25be1cb023d7554563 | | runc | | | | https://github.com/opencontainers/runc/commit/f3429eda1a8d478d7dbcb9c07cef943d88e67671 | | runc | | | | https://github.com/opencontainers/runc/commit/4f263985016276c2faf709e9db98fcc8677a8a13 | | runc | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | go | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | osv | | | | https://github.com/containerd/containerd/commit/b20b9f86b583b11a7fac34e6c682bc7633c74237 | | snyk | | | | https://github.com/moby/moby/commit/7a920fd27536ed5c547eddd9a71068b71a4ace6e | | snyk | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | snyk | | | | http://packetstormsecurity.com/files/176993/runc-1.1.11-File-Descriptor-Leak-Privilege-Escalation.html | | nvd | | | | http://www.openwall.com/lists/oss-security/2024/02/01/1 | | nvd | | | | http://www.openwall.com/lists/oss-security/2024/02/02/3 | | nvd | | | | https://github.com/opencontainers/runc/commit/02120488a4c0fc487d1ed2867e901eeed7ce8ecf | | nvd | | | | https://github.com/opencontainers/runc/releases/tag/v1.1.12 | | nvd | | | | https://github.com/opencontainers/runc/security/advisories/GHSA-xr7r-f8xq-vfvv | | nvd | | | | https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/SYMO3BANINS6RGFQFKPRG4FIOJ7GWYTL/ | | nvd | </details> 二、漏洞分析结构反馈 影响性分析说明: openEuler评分: 受影响版本排查(受影响/不受影响): 1.master(1): 2.openEuler-20.03-LTS-SP4: 3.openEuler-22.03-LTS-SP3(1): 4.openEuler-22.03-LTS-SP4(1): 5.openEuler-24.03-LTS(1): 6.openEuler-24.03-LTS-Next(1): 7.openEuler-24.03-LTS-SP1(1): 8.openEuler-24.03-LTS-SP2(1): 修复是否涉及abi变化(是/否): 1.master(1): 2.openEuler-20.03-LTS-SP4: 3.openEuler-22.03-LTS-SP3(1): 4.openEuler-22.03-LTS-SP4(1): 5.openEuler-24.03-LTS(1): 6.openEuler-24.03-LTS-Next(1): 7.openEuler-24.03-LTS-SP1(1): 8.openEuler-24.03-LTS-SP2(1): 原因说明: 1.master(1): 2.openEuler-20.03-LTS-SP4: 3.openEuler-22.03-LTS-SP3(1): 4.openEuler-22.03-LTS-SP4(1): 5.openEuler-24.03-LTS(1): 6.openEuler-24.03-LTS-Next(1): 7.openEuler-24.03-LTS-SP1(1): 8.openEuler-24.03-LTS-SP2(1):
Comments (
5
)
Sign in
to comment
Status
Declined
Backlog
已挂起
Doing
Done
Declined
Assignees
Not set
yangzhao_kl
yangzhao_kl
Assignee
Collaborator
+Assign
+Mention
Labels
sig/sig-CloudNative
CVE/UNAFFECTED
Not set
Projects
Unprojected
Unprojected
Milestones
No related milestones
No related milestones
Pull Requests
None yet
None yet
Successfully merging a pull request will close this issue.
Branches
No related branch
Branches (
-
)
Tags (
-
)
Planed to start   -   Planed to end
-
Top level
Not Top
Top Level: High
Top Level: Medium
Top Level: Low
Priority
Not specified
Serious
Main
Secondary
Unimportant
Duration
(hours)
参与者(2)
1
https://gitee.com/src-openeuler/containers-common.git
git@gitee.com:src-openeuler/containers-common.git
src-openeuler
containers-common
containers-common
Going to Help Center
Search
Git 命令在线学习
如何在 Gitee 导入 GitHub 仓库
Git 仓库基础操作
企业版和社区版功能对比
SSH 公钥设置
如何处理代码冲突
仓库体积过大,如何减小?
如何找回被删除的仓库数据
Gitee 产品配额说明
GitHub仓库快速导入Gitee及同步更新
什么是 Release(发行版)
将 PHP 项目自动发布到 packagist.org
Comment
Repository Report
Back to the top
Login prompt
This operation requires login to the code cloud account. Please log in before operating.
Go to login
No account. Register