Secunia Advisory SA10816Linux VServer Chroot Escape Vulnerability
|
||||||||||||||||||||||||||||||||||||||||||||||||||
Description
Markus Müller has identified a vulnerability in Linux VServer, allowing malicious users to break out of the chroot jail. The problem is that it is possible to traverse out of the chroot jail using a variant of the chroot-again exploit. The vulnerability has been reported in version 1.24 on kernel 2.4.24. Other versions may also be affected. A Proof of Concept exploit has been published. Solution Provided and/or discovered by Deep Links Do you have additional information related to this advisory?Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com
|
||||||||||||||||||||||||||||||||||||||||||||||||||
87 views | ![]() |
| Fedora update for samba | |
109 views | ![]() |
| Debian update for tdiary | |