attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.
References
Configurations
Information
Published : 2015-08-12 07:59
Updated : 2019-05-31 14:29
NVD link : CVE-2015-1334
Mitre link : CVE-2015-1334
JSON object : View
CWE
CWE-17
DEPRECATED: Code
Products Affected
linuxcontainers
- lxc