Lucene search

K
cvelistMitreCVELIST:CVE-2015-2925
HistoryNov 16, 2015 - 11:00 a.m.

CVE-2015-2925

2015-11-1611:00:00
mitre
www.cve.org
1

6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.1%

The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a “double-chroot attack.”

References