CVE Wiki Pixee · CVE intelligence
← All CVEs

CVE-2026-24834

Critical · CVSS 9.3

Kata Containers — Improper file system permissions allowing guest VM filesystem modification leading to arbitrary code execution (CWE-732, CWE-281)

CVSS
9.3
nvd
EPSS
KEV
No
Class
oss containerizable
CWE-732, CWE-281

Description

Kata Containers is an open source project focusing on a standard implementation of lightweight Virtual Machines (VMs) that perform like containers. In versions prior to 3.27.0, an issue in Kata with Cloud Hypervisor allows a user of the container to modify the file system used by the Guest micro VM ultimately achieving arbitrary code execution as root in said VM. The current understanding is this doesn’t impact the security of the Host or of other containers / VMs running on that Host (note that arm64 QEMU lacks NVDIMM read-only support: It is believed that until the upstream QEMU gains this capability, a guest write could reach the image file). Version 3.27.0 patches the issue.

Search profile — drives PoC discovery

Symbols Cloud HypervisorNVDIMMGuest micro VMkata-containersGHSA-wwj6-vghv-5p646a672503973bf7c687053e459bfff8a9652e16bfarm64 QEMUimage filefilesystem write
Keywords CVE-2026-24834Kata Containers Cloud Hypervisor filesystem escapeKata Containers guest VM arbitrary code executionNVDIMM read-only bypass Katakata-containers GHSA-wwj6-vghv-5p64kata-containers 3.27.0 patchKata Containers CWE-732 filesystem permissionskata-containers guest rootfs write exploitkata-containers Cloud Hypervisor PoC
Versions: < 3.27.0

Ranked PoCs (1) — best first

Heuristic ranking — not yet expert-vetted. Scored on structure + provenance, not execution.

Recall-favoring discovery; ranking by the Stage-4 scorer (Adam's rubric). Scanner/aggregator repos are hidden.

References

Status: enriched · ingested 2026-06-30T06:00:22.000Z · profiled 2026-07-01T00:30:14.000Z