Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 636386 (CVE-2016-10124) - <app-emulation/lxc-2.0.7: Security bypass vulnerability (CVE-2016-10124)
Summary: <app-emulation/lxc-2.0.7: Security bypass vulnerability (CVE-2016-10124)
Status: RESOLVED FIXED
Alias: CVE-2016-10124
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard: B2 [glsa cve]
Keywords:
Depends on: CVE-2017-5985
Blocks:
  Show dependency tree
 
Reported: 2017-11-03 14:52 UTC by GLSAMaker/CVETool Bot
Modified: 2018-05-14 22:12 UTC (History)
5 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description GLSAMaker/CVETool Bot gentoo-dev 2017-11-03 14:52:44 UTC
CVE-2016-10124 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2016-10124):
  An issue was discovered in Linux Containers (LXC) before 2016-02-22. When
  executing a program via lxc-attach, the nonpriv session can escape to the
  parent session by using the TIOCSTI ioctl to push characters into the
  terminal's input buffer, allowing an attacker to escape the container.
Comment 1 Christopher Díaz Riveros (RETIRED) gentoo-dev Security 2017-11-03 14:54:05 UTC
@Maintainers LXC 1.0.8 seems to be vulnerable, please stabilize a more recent version.

Thank you.
Comment 2 Agostino Sarubbo gentoo-dev 2017-11-05 11:46:49 UTC
the current stable 2.0.7 contains the fix.

However if the attacker can escape the container, I guess has a major rate than 4, I'm setting it to 2.
Comment 3 GLSAMaker/CVETool Bot gentoo-dev 2017-11-11 15:12:06 UTC
This issue was resolved and addressed in
 GLSA 201711-09 at https://security.gentoo.org/glsa/201711-09
by GLSA coordinator Aaron Bauman (b-man).
Comment 4 Aaron Bauman (RETIRED) gentoo-dev 2017-11-11 15:12:31 UTC
re-opened for cleanup
Comment 5 Aaron Bauman (RETIRED) gentoo-dev 2018-04-23 02:49:43 UTC
@maintainer(s), can we please clean the vulnerable?