Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-8659

Опубликовано: 13 фев. 2017
Источник: debian

Описание

Bubblewrap before 0.1.3 sets the PR_SET_DUMPABLE flag, which might allow local users to gain privileges by attaching to the process, as demonstrated by sending commands to a PrivSep socket.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bubblewrapfixed0.1.2-2package

Примечания

  • https://github.com/projectatomic/bubblewrap/issues/107

Связанные уязвимости

CVSS3: 7
ubuntu
почти 9 лет назад

Bubblewrap before 0.1.3 sets the PR_SET_DUMPABLE flag, which might allow local users to gain privileges by attaching to the process, as demonstrated by sending commands to a PrivSep socket.

CVSS3: 7
nvd
почти 9 лет назад

Bubblewrap before 0.1.3 sets the PR_SET_DUMPABLE flag, which might allow local users to gain privileges by attaching to the process, as demonstrated by sending commands to a PrivSep socket.

CVSS3: 7
github
больше 3 лет назад

Bubblewrap before 0.1.3 sets the PR_SET_DUMPABLE flag, which might allow local users to gain privileges by attaching to the process, as demonstrated by sending commands to a PrivSep socket.