Описание
Firejail before 0.9.64.4 allows attackers to bypass intended access restrictions because there is a TOCTOU race condition between a stat operation and an OverlayFS mount operation.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support, was needs-triage |
| devel | not-affected | 0.9.64.4-1 |
| esm-apps/bionic | needs-triage | |
| esm-apps/focal | released | 0.9.62-3ubuntu0.1 |
| esm-apps/jammy | not-affected | 0.9.64.4-1 |
| esm-apps/noble | not-affected | 0.9.64.4-1 |
| esm-apps/xenial | needs-triage | |
| esm-infra-legacy/trusty | DNE | |
| focal | released | 0.9.62-3ubuntu0.1 |
| groovy | ignored | end of life |
Показывать по
Ссылки на источники
EPSS
6.9 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
Firejail before 0.9.64.4 allows attackers to bypass intended access restrictions because there is a TOCTOU race condition between a stat operation and an OverlayFS mount operation.
Firejail before 0.9.64.4 allows attackers to bypass intended access re ...
Firejail before 0.9.64.4 allows attackers to bypass intended access restrictions because there is a TOCTOU race condition between a stat operation and an OverlayFS mount operation.
Уязвимость компонента OverlayFS SUID песочницы Firejail, связанная с недостаточной проверкой состояния совместно используемого ресурса, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
EPSS
6.9 Medium
CVSS2
7.8 High
CVSS3