The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a "double-chroot attack."
References
Configurations
Information
Published : 2015-11-16 03:59
Updated : 2018-01-04 18:30
NVD link : CVE-2015-2925
Mitre link : CVE-2015-2925
JSON object : View
CWE
CWE-254
7PK - Security Features
Products Affected
linux
- linux_kernel