Revision Date: | 2012-01-18 | Version: | 1 | Title: | CVE-2012-0055 on Ubuntu 16.04 LTS (xenial) - medium. | Description: | Using overlayfs with lxc causes tty problems that can kill X. Overlayfs needs to honor the necessary cgroup permission calls. Andy Whitcroft discovered a that the Overlayfs filesystem was not doing the extended permission checks needed by cgroups and Linux Security Modules (LSMs). A local user could exploit this to by-pass security policy and access files that should not be accessible.
| Family: | unix | Class: | vulnerability | Status: | | Reference(s): | CVE-2012-0055
| Platform(s): | Ubuntu 16.04 LTS
| Product(s): | | Definition Synopsis | Ubuntu 16.04 LTS (xenial) is installed. AND Package Information
NOT While related to the CVE in some way, the 'linux' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-aws' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-flo' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-gke' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-goldfish' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-hwe' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-hwe-edge' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-mako' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-raspi2' package in xenial is not affected.
OR NOT While related to the CVE in some way, the 'linux-snapdragon' package in xenial is not affected.
|
|