The pivot_root implementation in fs/namespace.c in the Linux kernel through 3.17 does not properly interact with certain locations of a chroot directory, which allows local users to cause a denial of service (mount-tree loop) via . (dot) values in both arguments to the pivot_root system call.
References
Configurations
Information
Published : 2014-10-13 03:55
Updated : 2020-08-14 11:14
NVD link : CVE-2014-7970
Mitre link : CVE-2014-7970
JSON object : View
CWE
CWE-400
Uncontrolled Resource Consumption
Products Affected
canonical
- ubuntu_linux
linux
- linux_kernel
novell
- suse_linux_enterprise_server