Get a Pentest and security assessment of your IT network.

2021-current

CVE-2015-1334 – attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container

attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1334

Reference (s):

  • BID:75998
  • URL: http://www.securityfocus.com/bid/75998
  • https://github.com/lxc/lxc/commit/5c3fcae78b63ac9dd56e36075903921bd9461f9e
  • DEBIAN:DSA-3317
  • URL: http://www.debian.org/security/2015/dsa-3317
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-4743 - Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tp

2021-current

CVE-2014-9838 - magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a

2021-current

CVE-2020-10447 - The way URIs are handled in admin/header.php in Chadha PHPKB Standard Mul