5
CVSSv2

CVE-2016-10124

Published: 09/01/2017 Updated: 13/11/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 8.6 | Impact Score: 4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

An issue exists in Linux Containers (LXC) prior to 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an malicious user to escape the container.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linuxcontainers lxc

Vendor Advisories

LXC would allow unintended access ...