The service daemon in CRIU does not properly restrict access to non-dumpable processes, which allows local users to obtain sensitive information via (1) process dumps or (2) ptrace access.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
criu checkpoint\\/restore in userspace - |
||
opensuse opensuse 13.2 |