Description
The admin sys mode is now conditional and dedicated for the special case. By default, since ezmaster@5.2.11 no instance (container) is launched with advanced capabilities (not launched as root)
Remediation
References
https://github.com/Inist-CNRS/ezmaster/blob/master/CHANGELOG.md#ezmaster-5211
https://github.com/Inist-CNRS/ezmaster/pull/51
https://github.com/Inist-CNRS/ezmaster/security/advisories/GHSA-g654-5qjf-g6cx
Related Vulnerabilities
CVE-2022-4135 Vulnerability in npm package electron
CVE-2021-38153 Vulnerability in maven package org.apache.kafka:kafka-clients
CVE-2020-2176 Vulnerability in maven package it.infuse.jenkins:usemango-runner
CVE-2016-10551 Vulnerability in npm package waterline-sequel
CVE-2018-1000134 Vulnerability in maven package com.unboundid:unboundid-ldapsdk