CVE-2016-10119: High severity netblue30 firejail vulnerability
Published Apr 13, 2017
·Updated
Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges.
Affected Software
1 affected component
Firejail Project Firejail Wordpress
Event History
Apr 13, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10119?
CVE-2016-10119 is classified as a high-severity vulnerability due to its potential to allow local users to gain elevated privileges.
2
How do I fix CVE-2016-10119?
To fix CVE-2016-10119, users should set appropriate permissions for the /tmp directory instead of using 0777, such as 1777.
3
Who is affected by CVE-2016-10119?
CVE-2016-10119 affects users of the Firejail application who are utilizing the default mount permissions for the /tmp directory.
4
What type of vulnerability is CVE-2016-10119?
CVE-2016-10119 is a local privilege escalation vulnerability that allows unauthorized access to system resources.
5
Is there a workaround for CVE-2016-10119?
A temporary workaround for CVE-2016-10119 is to restrict the use of Firejail or modify the mount options for /tmp prior to usage.