The do_write_pids function in lxcfs.c in LXCFS before 0.12 does not properly check permissions, which allows local users to gain privileges by writing a pid to the tasks file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ubuntu_linux | Canonical | 15.04 (including) | 15.04 (including) |
Ubuntu_linux | Canonical | 15.10 (including) | 15.10 (including) |
Lxcfs | Ubuntu | devel | * |
Lxcfs | Ubuntu | vivid | * |
Lxcfs | Ubuntu | wily | * |