Description
The admin sys mode is now conditional and dedicated for the special case. By default, since ezmaster@5.2.11 no instance (container) is launched with advanced capabilities (not launched as root)
Remediation
References
https://github.com/Inist-CNRS/ezmaster/blob/master/CHANGELOG.md#ezmaster-5211
https://github.com/Inist-CNRS/ezmaster/pull/51
https://github.com/Inist-CNRS/ezmaster/security/advisories/GHSA-g654-5qjf-g6cx
Related Vulnerabilities
CVE-2020-12827 Vulnerability in maven package org.webjars.npm:mjml
CVE-2017-16821 Vulnerability in maven package org.b3log:symphony
CVE-2016-1000220 Vulnerability in npm package kibana
CVE-2020-8176 Vulnerability in npm package koa-shopify-auth
CVE-2016-10677 Vulnerability in npm package google-closure-tools-latest