Firejail before 0.9.44.4, when running on a Linux kernel before 4.8, allows context-dependent attackers to bypass a seccomp-based sandbox protection mechanism via the –allow-debuggers argument.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firejail | Firejail_project | * | 0.9.44.4 (excluding) |
Firejail | Ubuntu | esm-apps/xenial | * |
Firejail | Ubuntu | upstream | * |
Firejail | Ubuntu | xenial | * |
Firejail | Ubuntu | yakkety | * |