CVE-2017-5985

Description

lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveraging lack of netns ownership check.

Risk Information

Base Score
3.3
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.09

Associated Vulnerability

VulnerabilityOS Platform
Linux Containers userspace tools (USN-3224-1) lxc_1.0.9-0ubuntu3_amd64.debLinux
Linux Containers userspace tools (USN-3224-1) lxc-common_2.0.7-0ubuntu1~16.04.2_i386.debLinux
Linux Containers userspace tools (USN-3224-1) lxc-common_2.0.7-0ubuntu1~16.04.2_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234