Описание
The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 4.10.0-19.21 |
esm-infra-legacy/trusty | not-affected | 3.13.0-35.62 |
esm-infra/xenial | not-affected | 4.2.0-16.19 |
lucid | not-affected | |
precise | not-affected | |
precise/esm | not-affected | |
saucy | released | 3.11.0-26.45 |
trusty | released | 3.13.0-35.62 |
trusty/esm | not-affected | 3.13.0-35.62 |
upstream | released | 3.16~rc1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | not-affected | |
precise/esm | DNE | precise was not-affected |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | not-affected | 4.4.0-1002.2 |
esm-infra/xenial | not-affected | 4.4.0-1001.10 |
precise | DNE | |
precise/esm | DNE | |
trusty | not-affected | 4.4.0-1002.2 |
trusty/esm | not-affected | 4.4.0-1002.2 |
upstream | released | 3.16~rc1 |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | not-affected | |
precise | DNE | |
precise/esm | DNE | |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/xenial | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was ignored [end of life, was needed] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
saucy | DNE | |
trusty | ignored | end of standard support, was needed |
trusty/esm | ignored | end of life, was needed |
upstream | released | 3.16~rc1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | ignored | end of life |
precise | DNE | |
precise/esm | DNE | |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
precise | DNE | |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE | |
xenial | not-affected | 4.4.0-1003.3 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/xenial | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was ignored [end of life, was needed] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
saucy | ignored | |
trusty | ignored | end of standard support, was needed |
trusty/esm | ignored | end of life, was needed |
upstream | released | 3.16~rc1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was ignored [abandoned]] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
saucy | ignored | |
trusty | ignored | end of standard support |
trusty/esm | DNE | trusty was ignored [abandoned] |
upstream | released | 3.16~rc1 |
utopic | ignored | end of life |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
esm-infra/xenial | not-affected | 4.8.0-36.36~16.04.1 |
precise | DNE | |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
esm-infra/xenial | not-affected | 4.8.0-36.36~16.04.1 |
precise | DNE | |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was ignored [abandoned] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was ignored [abandoned] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was ignored [abandoned] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | released | 3.5.0-54.81~precise1 |
precise/esm | DNE | precise was released [3.5.0-54.81~precise1] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | released | 3.8.0-44.66~precise1 |
precise/esm | DNE | precise was released [3.8.0-44.66~precise1] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | released | 3.11.0-26.45~precise1 |
precise/esm | DNE | precise was released [3.11.0-26.45~precise1] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | released | 3.13.0-35.62~precise1 |
precise/esm | not-affected | 3.13.0-35.62~precise1 |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [3.16.0-25.33~14.04.2]] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
trusty | not-affected | 3.16.0-25.33~14.04.2 |
trusty/esm | DNE | trusty was not-affected [3.16.0-25.33~14.04.2] |
upstream | released | 3.16~rc1 |
utopic | DNE | |
vivid | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [3.19.0-18.18~14.04.1]] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
trusty | not-affected | 3.19.0-18.18~14.04.1 |
trusty/esm | DNE | trusty was not-affected [3.19.0-18.18~14.04.1] |
upstream | released | 3.16~rc1 |
utopic | DNE | |
vivid | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [4.2.0-18.22~14.04.1]] |
precise | DNE | |
precise/esm | DNE | |
trusty | not-affected | 4.2.0-18.22~14.04.1 |
trusty/esm | DNE | trusty was not-affected [4.2.0-18.22~14.04.1] |
upstream | released | 3.16~rc1 |
vivid | DNE | |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | not-affected | 4.4.0-13.29~14.04.1 |
precise | DNE | |
precise/esm | DNE | |
trusty | not-affected | 4.4.0-13.29~14.04.1 |
trusty/esm | not-affected | 4.4.0-13.29~14.04.1 |
upstream | released | 3.16~rc1 |
vivid | DNE | |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was ignored [abandoned]] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
saucy | ignored | |
trusty | ignored | end of standard support |
trusty/esm | DNE | trusty was ignored [abandoned] |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/xenial | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was ignored [end of life, was needed] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
saucy | ignored | |
trusty | ignored | end of standard support, was needed |
trusty/esm | ignored | end of life, was needed |
upstream | released | 3.16~rc1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | trusty/esm was ignored [end of life, was needed] |
lucid | DNE | |
precise | DNE | |
precise/esm | DNE | |
saucy | ignored | |
trusty | ignored | end of standard support, was needed |
trusty/esm | ignored | end of life, was needed |
upstream | released | 3.16~rc1 |
utopic | not-affected |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | ignored | end of life |
precise | DNE | |
precise/esm | DNE | |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | ignored | end of life |
precise | ignored | end of life |
precise/esm | DNE | precise was ignored [abandoned] |
saucy | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 4.10.0-1004.6 |
esm-infra-legacy/trusty | DNE | |
precise | DNE | |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
vivid | DNE | |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | released | 4.2.0-1014.21 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 4.4.0-1050.54 |
esm-infra-legacy/trusty | DNE | |
precise | DNE | |
precise/esm | DNE | |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
vivid/stable-phone-overlay | DNE | |
vivid/ubuntu-core | DNE | |
wily | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
lucid | DNE | |
precise | not-affected | |
precise/esm | DNE | precise was not-affected |
saucy | ignored | end of life |
trusty | DNE | |
trusty/esm | DNE | |
upstream | released | 3.16~rc1 |
utopic | DNE |
Показывать по
Ссылки на источники
EPSS
6.2 Medium
CVSS2
Связанные уязвимости
The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.
The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.
The capabilities implementation in the Linux kernel before 3.14.8 does ...
The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions by first creating a user namespace, as demonstrated by setting the setgid bit on a file with group ownership of root.
ELSA-2014-3096: Unbreakable Enterprise kernel security update (IMPORTANT)
EPSS
6.2 Medium
CVSS2