7.8
CVSSv3

CVE-2015-6240

Published: 07/06/2017 Updated: 16/09/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The chroot, jail, and zone connection plugins in ansible prior to 1.9.2 allow local users to escape a restricted environment via a symlink attack.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat ansible

Vendor Advisories

The chroot, jail, and zone connection plugins in ansible before 192 allow local users to escape a restricted environment via a symlink attack ...

Github Repositories

Code for HPE Project on Securing Open Source Components on Containers.

Securing_Open_Source_Components_on_Containers Code for HPE Project on Securing Open Source Components on Containers Scanning of vulnerabilities on the Docker Debian Image was done using the Anchore Engine CLI To demonstrate vulnerabilities, the Chroot, Chmod and AppArmor exploitations were performed on the Ubuntu Bionic Container Finally, Docker-py and Docker-compose compone