CVE-2016-8649

Publication date

2017-05-01 06:08:00

Family

redhat

State

PUBLISHED

Description

lxc-attach in LXC before 1.0.9 and 2.x before 2.0.6 allows an attacker inside of an unprivileged container to use an inherited file descriptor, of the hosts /proc, to access the rest of the hosts filesystem via the openat() family of syscalls.