Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Firejail before 0.9.44.4, when running on a Linux kernel before 4.8, allows context-dependent attackers to bypass a seccomp-based sandbox protection mechanism via the --allow-debuggers argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Firejail 安全漏洞
Vulnerability Description
Firejail是一套使用C语言编写的SUID程序,它可通过使用Linux命名空间(Linux namespaces)和seccomp-bpf(一种沙箱机制)限制不受信任的应用程序的运行环境来降低安全漏洞风险。 运行在Linux kernel 4.8之前版本上的Firejail 0.9.44.4之前的版本中存在安全漏洞。攻击者可借助‘--allow-debuggers’参数利用该漏洞绕过seccomp-based沙盒保护机制。
CVSS Information
N/A
Vulnerability Type
N/A