Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LXC 代码注入漏洞
Vulnerability Description
LXC(LinuX Containers)是Linux内核容器功能的一个用户空间接口,它通过强大的API和简单的工具,使Linux用户易于创建和管理系统或应用容器。 LXC 1.1.2及之前版本的attach.c文件中存在安全漏洞,该漏洞源于程序不正确地使用容器中的proc文件系统。本地攻击者可通过挂载带有特制的AppArmor配置文件或SELinux标签的proc文件系统利用该漏洞绕过AppArmor或SELinux限制。
CVSS Information
N/A
Vulnerability Type
N/A