Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-14179

Опубликовано: 02 фев. 2018
Источник: ubuntu
Приоритет: high
CVSS2: 7.2
CVSS3: 7.8

Описание

Apport before 2.13 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion, possibly gain root privileges, or escape from containers.

РелизСтатусПримечание
artful

not-affected

devel

not-affected

esm-infra-legacy/trusty

not-affected

2.14.1-0ubuntu3.25
esm-infra/xenial

not-affected

precise/esm

DNE

trusty

not-affected

2.14.1-0ubuntu3.25
trusty/esm

not-affected

2.14.1-0ubuntu3.25
upstream

released

2.13
xenial

not-affected

zesty

not-affected

Показывать по

7.2 High

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
около 8 лет назад

Apport before 2.13 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion, possibly gain root privileges, or escape from containers.

CVSS3: 7.8
github
больше 3 лет назад

Apport before 2.13 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion, possibly gain root privileges, or escape from containers.

CVSS3: 7.8
fstec
больше 8 лет назад

Уязвимость программного обеспечения формирования и отправки отчетов об ошибках Apport операционной системы Ubuntu, позволяющая нарушителю вызвать отказ в обслуживании, осуществить выход из LXC или получить привилегии root

7.2 High

CVSS2

7.8 High

CVSS3