Search CVE reports


Toggle filters

11 – 15 of 15 results


CVE-2015-1342

Medium priority
Fixed

LXCFS before 0.12 does not properly enforce directory escapes, which might allow local users to gain privileges by (1) querying or (2) updating a cgroup.

1 affected package

lxcfs

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
lxcfs — — — — —
Show less packages

CVE-2015-1335

Medium priority

Some fixes available 2 of 3

lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink attack on a (1) mount target or (2) bind mount source.

1 affected package

lxc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
lxc — — — — —
Show less packages

CVE-2015-1334

Medium priority

Some fixes available 7 of 8

attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.

1 affected package

lxc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
lxc — — — — —
Show less packages

CVE-2015-1331

Medium priority
Fixed

lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*.

1 affected package

lxc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
lxc — — — — —
Show less packages

CVE-2013-6441

Medium priority

Some fixes available 1 of 5

The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.

1 affected package

lxc

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
lxc — — — — —
Show less packages