Описание
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
Ссылки
- PatchThird Party Advisory
- ExploitPatchThird Party Advisory
- Release NotesThird Party Advisory
- PatchThird Party Advisory
- ExploitPatchThird Party Advisory
- Release NotesThird Party Advisory
Уязвимые конфигурации
EPSS
8.8 High
CVSS3
4.6 Medium
CVSS2
Дефекты
Связанные уязвимости
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
In Firejail before 0.9.60, seccomp filters are writable inside the jai ...
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
EPSS
8.8 High
CVSS3
4.6 Medium
CVSS2