lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink attack on a (1) mount target or (2) bind mount source.
CVSS Details
- CVSS 3.1 Base Score: 8.4
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade lxc | Nov 23, 2015 | Oct 1, 2015 |
| Oracle_linux | — | Upgrade lxcUpgrade lxc-libsUpgrade lxc-devel | Oct 16, 2024 | Oct 1, 2015 |
| Suse | — | Upgrade lxc-develUpgrade lxc | Dec 18, 2015 | Oct 1, 2015 |
| Ubuntu | — | Upgrade lxc | Nov 8, 2024 | Oct 1, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub