Description
The admin sys mode is now conditional and dedicated for the special case. By default, since ezmaster@5.2.11 no instance (container) is launched with advanced capabilities (not launched as root)
Remediation
References
https://github.com/Inist-CNRS/ezmaster/blob/master/CHANGELOG.md#ezmaster-5211
https://github.com/Inist-CNRS/ezmaster/pull/51
https://github.com/Inist-CNRS/ezmaster/security/advisories/GHSA-g654-5qjf-g6cx
Related Vulnerabilities
CVE-2022-38370 Vulnerability in maven package org.apache.iotdb:iotdb-grafana-connector
CVE-2022-27820 Vulnerability in maven package org.zaproxy:zap
CVE-2021-21350 Vulnerability in maven package com.thoughtworks.xstream:xstream
CVE-2022-39263 Vulnerability in npm package @next-auth/upstash-redis-adapter
CVE-2021-28164 Vulnerability in maven package org.eclipse.jetty:jetty-webapp