Описание
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needed |
| cosmic | ignored | end of life |
| devel | released | 0.9.58.2-2 |
| disco | ignored | end of life |
| eoan | released | 0.9.58.2-2 |
| esm-apps/bionic | needed | |
| esm-apps/focal | released | 0.9.58.2-2 |
| esm-apps/jammy | released | 0.9.58.2-2 |
| esm-apps/noble | released | 0.9.58.2-2 |
| esm-apps/xenial | needed |
Показывать по
4.6 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
In Firejail before 0.9.60, seccomp filters are writable inside the jai ...
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
4.6 Medium
CVSS2
8.8 High
CVSS3