LXCFS before 0.12 does not properly enforce directory escapes, which might allow local users to gain privileges by (1) querying or (2) updating a cgroup.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Ubuntu_linux |
Canonical |
15.10 |
15.10 |
Ubuntu_linux |
Canonical |
15.04 |
15.04 |
References