Red Hat Security Advisory: RHOAI 3.3 - Red Hat OpenShift AI
Release of RHOAI 3.3 provides these changes:
AI Analysis
Technical Summary
A local privilege escalation vulnerability (CVE-2024-25621) exists in containerd due to overly permissive default directory permissions. Local users on the host can access the metadata store, content store, and Kubernetes local volumes, potentially exploiting setuid binaries to elevate privileges. The vulnerability affects Red Hat OpenShift AI 3.3 and other related Red Hat products that include containerd components. Red Hat has provided updated container images and documented manual mitigation steps involving restricting directory permissions or running containerd in rootless mode.
Potential Impact
The vulnerability allows local users with access to the host to read and modify containerd metadata and content stores, including Kubernetes local volumes. This can lead to privilege escalation on the host system by leveraging setuid binaries found in these volumes. The impact includes confidentiality and integrity compromise of container data and potential full host privilege escalation.
Mitigation Recommendations
Red Hat has released updated container images for Red Hat OpenShift AI 3.3 and related products to address this issue. Administrators should upgrade to these updated versions following Red Hat's documented upgrade instructions. As an immediate mitigation, system administrators can manually restrict permissions on containerd directories by running: chmod 700 /var/lib/containerd, chmod 700 /run/containerd/io.containerd.grpc.v1.cri, and chmod 700 /run/containerd/io.containerd.sandbox.controller.v1.shim. Alternatively, running containerd in rootless mode mitigates the risk. Check Red Hat's official advisory for detailed guidance.
Red Hat Security Advisory: RHOAI 3.3 - Red Hat OpenShift AI
Description
Release of RHOAI 3.3 provides these changes:
Affected software
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
A local privilege escalation vulnerability (CVE-2024-25621) exists in containerd due to overly permissive default directory permissions. Local users on the host can access the metadata store, content store, and Kubernetes local volumes, potentially exploiting setuid binaries to elevate privileges. The vulnerability affects Red Hat OpenShift AI 3.3 and other related Red Hat products that include containerd components. Red Hat has provided updated container images and documented manual mitigation steps involving restricting directory permissions or running containerd in rootless mode.
Potential Impact
The vulnerability allows local users with access to the host to read and modify containerd metadata and content stores, including Kubernetes local volumes. This can lead to privilege escalation on the host system by leveraging setuid binaries found in these volumes. The impact includes confidentiality and integrity compromise of container data and potential full host privilege escalation.
Mitigation Recommendations
Red Hat has released updated container images for Red Hat OpenShift AI 3.3 and related products to address this issue. Administrators should upgrade to these updated versions following Red Hat's documented upgrade instructions. As an immediate mitigation, system administrators can manually restrict permissions on containerd directories by running: chmod 700 /var/lib/containerd, chmod 700 /run/containerd/io.containerd.grpc.v1.cri, and chmod 700 /run/containerd/io.containerd.sandbox.controller.v1.shim. Alternatively, running containerd in rootless mode mitigates the risk. Check Red Hat's official advisory for detailed guidance.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- Red Hat Product Security
- Advisory Id
- RHSA-2026:3713
- Cve Count
- 46
- Additional Cves
- ["CVE-2025-6242","CVE-2025-12638","CVE-2025-12816","CVE-2025-14180","CVE-2025-14920","CVE-2025-14921","CVE-2025-14922","CVE-2025-14924","CVE-2025-14925","CVE-2025-14926","CVE-2025-14927","CVE-2025-14928","CVE-2025-14929","CVE-2025-14930","CVE-2025-15284","CVE-2025-48956","CVE-2025-52881","CVE-2025-59425","CVE-2025-61726","CVE-2025-61729","CVE-2025-62164","CVE-2025-62593","CVE-2025-64756","CVE-2025-66031","CVE-2025-66034","CVE-2025-66416","CVE-2025-66418","CVE-2025-66448","CVE-2025-66471","CVE-2025-66506","CVE-2025-66626","CVE-2025-67725","CVE-2025-67726","CVE-2025-68156","CVE-2025-68476","CVE-2025-68665","CVE-2025-69223","CVE-2025-69872","CVE-2026-0897","CVE-2026-1260","CVE-2026-21441","CVE-2026-22778","CVE-2026-22807","CVE-2026-24049","CVE-2026-24486"]
Threat ID: 6a160964e29bf47b506297b7
Added to database: 05/26/2026, 20:58:12 UTC
Last enriched: 08/10/2026, 19:57:04 UTC
Last updated: 09/15/2026, 01:45:37 UTC
Views: 314
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.