MEDIUM4.6
The capsh program in libcap before 2.22 does not change the current working directory when the --chroot option is specified, which allows local users to bypass the chroot restrictions via unspecified vectors.
CVSS 2.0MEDIUM 4.6
CVSS:2.0/AV:L/AC:L/Au:N/C:P/I:P/A:PReferences
- http://rhn.redhat.com/errata/RHSA-2011-1694.html
- https://bugzilla.redhat.com/show_bug.cgi?id=722694
- https://sites.google.com/site/fullycapable/release-notes-for-libcap/releasenotesfor222
- http://rhn.redhat.com/errata/RHSA-2011-1694.html
- https://bugzilla.redhat.com/show_bug.cgi?id=722694
- https://sites.google.com/site/fullycapable/release-notes-for-libcap/releasenotesfor222