CVE-2015-1334
Publication date 22 July 2015
Last updated 24 July 2024
Ubuntu priority
attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.
Status
Package | Ubuntu Release | Status |
---|---|---|
lxc | ||
16.04 LTS xenial |
Fixed 1.1.3-0ubuntu1
|
|
14.04 LTS trusty |
Fixed 1.0.7-0ubuntu0.2
|
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-2675-1
- LXC vulnerabilities
- 22 July 2015