First published: Thu Apr 13 2017(Updated: )
Firejail does not properly clean environment variables, which allows local users to gain privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Firejail Project Firejail |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-10122 is considered a high severity vulnerability due to its potential to allow local users to gain elevated privileges.
To fix CVE-2016-10122, it is advised to upgrade Firejail to the latest version where the environment variable sanitization issue is addressed.
Local users of Firejail are affected by CVE-2016-10122, as it involves improper cleaning of environment variables.
CVE-2016-10122 is classified as a privilege escalation vulnerability.
CVE-2016-10122 was disclosed in January 2017.