The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fedora | Fedoraproject | 25 | 25 |
Fedora | Fedoraproject | 24 | 24 |
Fedora | Fedoraproject | 23 | 23 |
Mock | Ubuntu | artful | * |
Mock | Ubuntu | esm-apps/xenial | * |
Mock | Ubuntu | trusty | * |
Mock | Ubuntu | upstream | * |
Mock | Ubuntu | xenial | * |
Mock | Ubuntu | yakkety | * |
Mock | Ubuntu | zesty | * |