Related Vulnerabilities: CVE-2017-5206  

A vulnerability has been discovered when using ptrace with --allow-debuggers, which allows a sandboxed program to escape the seccomp profile by rewriting permitted system calls into unpermitted ones pre Linux 4.8.

Severity High

Remote No

Type Privilege escalation

Description

A vulnerability has been discovered when using ptrace with --allow-debuggers, which allows a sandboxed program to escape the seccomp profile by rewriting permitted system calls into unpermitted ones pre Linux 4.8.

AVG-128 firejail 0.9.44.2-1 0.9.44.10-1 High Fixed

https://github.com/netblue30/firejail/commit/6b8dba29d73257311564ee7f27b9b14758cc693e