Описание
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container directory via unspecified vectors.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2.0.2-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | |
| esm-infra-legacy/xenial | released | 2.0.2-0ubuntu1~16.04.1 |
| esm-infra/xenial | released | 2.0.2-0ubuntu1~16.04.1 |
| precise | DNE | |
| trusty | DNE | |
| trusty/esm | DNE | |
| upstream | needs-triage | |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
10
2.1 Low
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.5
nvd
около 10 лет назад
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container directory via unspecified vectors.
CVSS3: 5.5
debian
около 10 лет назад
LXD before 2.0.2 does not properly set permissions when switching an u ...
2.1 Low
CVSS2
5.5 Medium
CVSS3