Lucene search

K
ubuntuUbuntuUSN-2753-1
HistorySep 29, 2015 - 12:00 a.m.

LXC vulnerability

2015-09-2900:00:00
ubuntu.com
50

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

High

EPSS

0.001

Percentile

28.1%

Releases

  • Ubuntu 15.04
  • Ubuntu 14.04 ESM

Packages

  • lxc - Linux Containers userspace tools

Details

Roman Fiedler discovered a directory traversal flaw in lxc-start. A local
attacker with access to an LXC container could exploit this flaw to run
programs inside the container that are not confined by AppArmor or expose
unintended files in the host to the container.

OSVersionArchitecturePackageVersionFilename
Ubuntu15.04noarchlxc< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchliblxc1< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchliblxc1-dbgsym< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlua-lxc< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlua-lxc-dbgsym< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlxc-dbg< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlxc-dbgsym< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlxc-dev< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlxc-dev-dbgsym< 1.1.2-0ubuntu3.2UNKNOWN
Ubuntu15.04noarchlxc-templates< 1.1.2-0ubuntu3.2UNKNOWN
Rows per page:
1-10 of 281

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

High

EPSS

0.001

Percentile

28.1%