Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jhgp-x42x-cx6m

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.

The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.

EPSS

Процентиль: 100%
0.89274
Высокий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 9 лет назад

The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.

CVSS3: 7.8
nvd
около 9 лет назад

The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.

CVSS3: 7.8
debian
около 9 лет назад

The overlayfs implementation in the linux (aka Linux kernel) package b ...

EPSS

Процентиль: 100%
0.89274
Высокий

7.8 High

CVSS3