CVE Vulnerabilities

CVE-2015-1342

Published: Dec 07, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

LXCFS before 0.12 does not properly enforce directory escapes, which might allow local users to gain privileges by (1) querying or (2) updating a cgroup.

Affected Software

NameVendorStart VersionEnd Version
Ubuntu_linuxCanonical15.04 (including)15.04 (including)
Ubuntu_linuxCanonical15.10 (including)15.10 (including)
LxcfsUbuntudevel*
LxcfsUbuntuvivid*
LxcfsUbuntuwily*

References