Related Vulnerabilities: CVE-2017-5180  

A race condition vulnerability has been discovered in firejail. An attacker that is able to symlink to arbitrary binaries or libraries can trick firejail into running them with EUID 0, resulting in escalation of privilege.

Severity High

Remote No

Type Privilege escalation

Description

A race condition vulnerability has been discovered in firejail. An attacker that is able to symlink to arbitrary binaries or libraries can trick firejail into running them with EUID 0, resulting in escalation of privilege.

AVG-128 firejail 0.9.44.2-1 0.9.44.10-1 High Fixed

http://www.openwall.com/lists/oss-security/2017/01/04/1
https://github.com/netblue30/firejail/issues/1020

http://seclists.org/oss-sec/2017/q1/21