5
CVSSv2

CVE-2005-4347

Published: 31/12/2005 Updated: 04/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Linux 2.4 kernel patch in kernel-patch-vserver prior to 1.9.5.5 and 2.x prior to 2.3 for Debian GNU/Linux does not correctly set the "chroot barrier" with util-vserver, which allows malicious users to access files on the host system that are outside of the vserver.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

debian kernel-patch-vserver

debian debian linux 3.0

debian debian linux 3.1

Vendor Advisories

Several vulnerabilities have been discovered in the Debian vserver support for Linux The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-4347 Bjørn Steinbrink discovered that the chroot barrier is not set correctly with util-vserver which may result in unauthorised escapes from a vserver to th ...