Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-10124

Опубликовано: 09 янв. 2017
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 8.6

Описание

An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the container.

РелизСтатусПримечание
devel

not-affected

2.0.8-0ubuntu3
esm-infra-legacy/trusty

released

1.0.10-0ubuntu1.1
esm-infra/xenial

not-affected

2.0.7-0ubuntu1~16.04.2
precise

ignored

end of life
precise/esm

DNE

precise was needed
trusty

released

1.0.10-0ubuntu1.1
trusty/esm

released

1.0.10-0ubuntu1.1
upstream

released

1:2.0.0-1
vivid/stable-phone-overlay

ignored

end of life
vivid/ubuntu-core

DNE

Показывать по

5 Medium

CVSS2

8.6 High

CVSS3

Связанные уязвимости

CVSS3: 8.6
nvd
около 9 лет назад

An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the container.

CVSS3: 8.6
debian
около 9 лет назад

An issue was discovered in Linux Containers (LXC) before 2016-02-22. W ...

CVSS3: 8.6
github
больше 3 лет назад

An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the container.

5 Medium

CVSS2

8.6 High

CVSS3