Oval Definition:
oval:org.opensuse.security:def:20151334
Revision Date
:
2022-06-30
Version
:
1
Title
:
CVE-2015-1334
Description
:
attach.c in LXC 1.1.2 and earlier uses the proc filesystem in a container, which allows local container users to escape AppArmor or SELinux confinement by mounting a proc filesystem with a crafted (1) AppArmor profile or (2) SELinux label.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2015-1334
Mitre CVE-2015-1334
SUSE CVE-2015-1334
openSUSE-SU-2015:1315-1
openSUSE-SU-2015:1317-1
openSUSE-SU-2019:1481-1
Platform(s)
:
openSUSE 13.1
openSUSE 13.2
openSUSE Leap 42.3
openSUSE Tumbleweed
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP3
Product(s)
:
Definition Synopsis
openSUSE 13.1 is installed
AND
Package Information
lxc-0.9.0-3.8.1 is installed
OR
lxc-devel-0.9.0-3.8.1 is installed
Definition Synopsis
openSUSE 13.2 is installed
AND
Package Information
lxc-1.0.6-3.1 is installed
OR
lxc-devel-1.0.6-3.1 is installed
Definition Synopsis
openSUSE Leap 42.3 is installed
AND
Package Information
liblxc-devel-3.1.0-24 is installed
AND
liblxc-devel is signed with openSUSE key
OR
liblxc1-3.1.0-24 is installed
AND
liblxc1 is signed with openSUSE key
OR
lxc-3.1.0-24 is installed
AND
lxc is signed with openSUSE key
OR
lxc-bash-completion-3.1.0-24 is installed
AND
lxc-bash-completion is signed with openSUSE key
OR
lxcfs-3.0.3-2 is installed
AND
lxcfs is signed with openSUSE key
OR
lxcfs-hooks-lxc-3.0.3-2 is installed
AND
lxcfs-hooks-lxc is signed with openSUSE key
OR
pam_cgfs-3.1.0-24 is installed
AND
pam_cgfs is signed with openSUSE key
Definition Synopsis
openSUSE Tumbleweed is installed
AND
Package Information
liblxc-devel-2.0.4-2.1 is installed
OR
liblxc1-2.0.4-2.1 is installed
OR
lxc-2.0.4-2.1 is installed
Definition Synopsis
Release Information
SUSE Linux Enterprise Server 11 SP2 is installed
OR
SUSE Linux Enterprise Server 11 SP3 is installed
AND
lxc is not affected
BACK