Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc.
References
Link | Resource |
---|---|
http://www.openwall.com/lists/oss-security/2017/01/06/2 | Mailing List Third Party Advisory |
http://www.openwall.com/lists/oss-security/2017/01/05/4 | Mailing List Third Party Advisory |
Configurations
Information
Published : 2017-04-13 07:59
Updated : 2017-04-19 12:39
NVD link : CVE-2016-10117
Mitre link : CVE-2016-10117
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
firejail_project
- firejail