Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2019-12589 In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joi… Firejail 0.9.60+ Fix from $1,9502019-06-03 HIGH 8.1 CVE-2019-12499 Firejail before 0.9.60 allows truncation (resizing to length 0) of the firejail binary on the host by running exploit code inside a firejail sandbox … Firejail 0.9.60+ Fix from $1,9502019-05-31 HIGH 7.8 CVE-2016-10117 Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc. Firejail Mitigation only Fix from $1,9502017-04-13 HIGH 7.8 CVE-2016-10119 Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges. Firejail Mitigation only Fix from $1,9502017-04-13 HIGH 7.8 CVE-2016-10120 Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges. Firejail Mitigation only Fix from $1,9502017-04-13 HIGH 7.8 CVE-2016-10121 Firejail uses weak permissions for /dev/shm/firejail and possibly other files, which allows local users to gain privileges. Firejail Mitigation only Fix from $1,9502017-04-13 HIGH 7.8 CVE-2016-10122 Firejail does not properly clean environment variables, which allows local users to gain privileges. Firejail No fix yet Fix from $1,9502017-04-13 HIGH 7.8 CVE-2016-10123 Firejail allows --chroot when seccomp is not supported, which might allow local users to gain privileges. Firejail No fix yet Fix from $1,9502017-04-13 CRITICAL 9.0 CVE-2017-5206 Firejail before 0.9.44.4, when running on a Linux kernel before 4.8, allows context-dependent attackers to bypass a seccomp-based sandbox protection … Firejail 0.9.44.4+ Fix from $2,3002017-03-23 HIGH 7.8 CVE-2017-5207 Firejail before 0.9.44.4, when running a bandwidth command, allows local users to gain root privileges via the --shell argument. Firejail 0.9.44.4+ Fix from $1,9502017-03-23 HIGH 8.8 CVE-2017-5180 Firejail before 0.9.44.4 and 0.9.38.x LTS before 0.9.38.8 LTS does not consider the .Xauthority case during its attempt to prevent accessing user fil… Firejail 0.9.38.8 / 0.9.44.4+ Fix from $1,9502017-02-09 HIGH 8.8 CVE-2017-5940 Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address dotfile cases during its attempt to prevent accessing… Firejail after 0.9.44.6 Fix from $1,9502017-02-09 HIGH 8.8 CVE-2016-9016 Firejail 0.9.38.4 allows local users to execute arbitrary commands outside of the sandbox via a crafted TIOCSTI ioctl call. Firejail Patch available Fix from $1,9502017-01-19