First published: Thu Apr 13 2017(Updated: )
Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Firejail Project Firejail |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-10120 is considered a high severity vulnerability due to its potential for privilege escalation.
To fix CVE-2016-10120, update Firejail to a version that implements stricter permissions on the affected mount points.
Users of Firejail versions prior to the fix are affected by CVE-2016-10120.
The implications of CVE-2016-10120 include the possibility for local users to gain elevated privileges on the system.
A potential workaround for CVE-2016-10120 is to manually adjust the permissions of the affected directories before applying the update.