Описание
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container directory via unspecified vectors.
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
Конфигурация 2
cpe:2.3:a:canonical:lxd:2.0.1:*:*:*:*:*:*:*
EPSS
Процентиль: 28%
0.00346
Низкий
5.5 Medium
CVSS3
2.1 Low
CVSS2
Дефекты
CWE-200
Связанные уязвимости
CVSS3: 5.5
ubuntu
около 10 лет назад
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container directory via unspecified vectors.
CVSS3: 5.5
debian
около 10 лет назад
LXD before 2.0.2 does not properly set permissions when switching an u ...
EPSS
Процентиль: 28%
0.00346
Низкий
5.5 Medium
CVSS3
2.1 Low
CVSS2
Дефекты
CWE-200