Vulnerabilities > Selinux Project > Selinux > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-03-02 CVE-2018-1063 Context relabeling of filesystems is vulnerable to symbolic link attack, allowing a local, unprivileged malicious entity to change the SELinux context of an arbitrary file to a context with few restrictions.
local
low complexity
redhat selinux-project
4.4
2017-07-21 CVE-2015-3170 7PK - Security Features vulnerability in Selinux Project Selinux
selinux-policy when sysctl fs.protected_hardlinks are set to 0 allows local users to cause a denial of service (SSH login prevention) by creating a hardlink to /etc/passwd from a directory named .config, and updating selinux-policy.
local
low complexity
selinux-project CWE-254
5.5