Oval Definition:oval:org.opensuse.security:def:20151334
Revision Date:2022-06-30Version:1
Title:CVE-2015-1334
Description:

attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-1334
Mitre CVE-2015-1334
SUSE CVE-2015-1334
openSUSE-SU-2015:1315-1
openSUSE-SU-2015:1317-1
openSUSE-SU-2019:1481-1
Platform(s):openSUSE 13.1
openSUSE 13.2
openSUSE Leap 42.3
openSUSE Tumbleweed
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP3
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND Package Information
  • lxc-0.9.0-3.8.1 is installed
  • OR lxc-devel-0.9.0-3.8.1 is installed
  • Definition Synopsis
  • openSUSE 13.2 is installed
  • AND Package Information
  • lxc-1.0.6-3.1 is installed
  • OR lxc-devel-1.0.6-3.1 is installed
  • Definition Synopsis
  • openSUSE Leap 42.3 is installed
  • AND Package Information
  • liblxc-devel-3.1.0-24 is installed
  • AND liblxc-devel is signed with openSUSE key
  • OR
  • liblxc1-3.1.0-24 is installed
  • AND liblxc1 is signed with openSUSE key
  • OR
  • lxc-3.1.0-24 is installed
  • AND lxc is signed with openSUSE key
  • OR
  • lxc-bash-completion-3.1.0-24 is installed
  • AND lxc-bash-completion is signed with openSUSE key
  • OR
  • lxcfs-3.0.3-2 is installed
  • AND lxcfs is signed with openSUSE key
  • OR
  • lxcfs-hooks-lxc-3.0.3-2 is installed
  • AND lxcfs-hooks-lxc is signed with openSUSE key
  • OR
  • pam_cgfs-3.1.0-24 is installed
  • AND pam_cgfs is signed with openSUSE key
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • liblxc-devel-2.0.4-2.1 is installed
  • OR liblxc1-2.0.4-2.1 is installed
  • OR lxc-2.0.4-2.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP2 is installed
  • OR SUSE Linux Enterprise Server 11 SP3 is installed
  • AND lxc is not affected
  • BACK