CVE-2015-1328: High severity Canonical Ubuntu Linux vulnerability
Last updated 25 August 2025
Other sources
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.
— Launchpad
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1328?
CVE-2015-1328 is categorized as a critical vulnerability due to its potential to allow local users to gain root access.
How do I fix CVE-2015-1328?
To fix CVE-2015-1328, upgrade the Linux kernel to versions 3.19.0-21.21 or later for affected Ubuntu systems.
Which versions of Ubuntu are affected by CVE-2015-1328?
Ubuntu versions through 15.04 are affected by CVE-2015-1328.
What is the nature of the vulnerability in CVE-2015-1328?
CVE-2015-1328 involves a permission checking flaw in the overlayfs implementation, allowing unauthorized file creation.
Can CVE-2015-1328 be exploited remotely?
CVE-2015-1328 requires local access to exploit, as it targets local user permissions.