Search CVE reports


Toggle filters

11 – 18 of 18 results


CVE-2016-10119

Medium priority
Not affected

Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges.

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail
Show less packages

CVE-2016-10118

Low priority

Some fixes available 1 of 2

Firejail allows local users to truncate /etc/resolv.conf via a chroot command to /.

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail
Show less packages

CVE-2016-10117

Medium priority
Not affected

Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc.

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail
Show less packages

CVE-2017-5207

Medium priority
Vulnerable

Firejail before 0.9.44.4, when running a bandwidth command, allows local users to gain root privileges via the --shell argument.

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-5206

Medium priority
Vulnerable

Firejail before 0.9.44.4, when running on a Linux kernel before 4.8, allows context-dependent attackers to bypass a seccomp-based sandbox protection mechanism via the --allow-debuggers argument.

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-5940

Medium priority
Ignored

Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address dotfile cases during its attempt to prevent accessing user files with an euid of zero, which allows local users to conduct...

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail
Show less packages

CVE-2017-5180

Medium priority

Some fixes available 1 of 2

Firejail before 0.9.44.4 and 0.9.38.x LTS before 0.9.38.8 LTS does not consider the .Xauthority case during its attempt to prevent accessing user files with an euid of zero, which allows local users to conduct sandbox-escape...

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail
Show less packages

CVE-2016-9016

Medium priority

Some fixes available 1 of 2

Firejail 0.9.38.4 allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call.

1 affected package

firejail

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firejail
Show less packages