All errata/p8/ALT-PU-2016-1873-1
ALT-PU-2016-1873-1

Package update lxc in branch p8

Version2.0.4-alt1
Published2016-08-22
Max severityHIGH
Severity:

Closed issues (2)

CVE-2016-10124
HIGH8.6

An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the container.

Published: 2017-01-09Modified: 2025-04-20
CVSS 2.0MEDIUM 5.0
CVSS:2.0/AV:N/AC:L/Au:N/C:N/I:P/A:N
CVSS 3.xHIGH 8.6
CVSS:3.x/CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N