Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-3627
HistoryMay 18, 2015 - 3:59 p.m.

Design/Logic Flaw

2015-05-1815:59:00
PRIOn knowledge base
www.prio-n.com
7

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Libcontainer and Docker Engine before 1.6.1 opens the file-descriptor passed to the pid-1 process before performing the chroot, which allows local users to gain privileges via a symlink attack in an image.

CPENameOperatorVersion
dockerle1.6
libcontainerle1.6.0

6.8 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%