Vulnerabilities > Linuxcontainers

DATE CVE VULNERABILITY TITLE RISK
2015-08-12 CVE-2015-1331 Link Following vulnerability in Linuxcontainers LXC
lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*.
local
low complexity
linuxcontainers CWE-59
4.9
2015-01-07 CVE-2014-1425 Permissions, Privileges, and Access Controls vulnerability in multiple products
cmanager 0.32 does not properly enforce nesting when modifying cgroup properties, which allows local users to set cgroup values for all cgroups via unspecified vectors.
local
low complexity
linuxcontainers canonical CWE-264
2.1
2014-02-14 CVE-2013-6441 Permissions, Privileges, and Access Controls vulnerability in Linuxcontainers LXC
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.
local
low complexity
linuxcontainers CWE-264
7.2