[Secure-testing-team] Bug#850528: firejail: root shell via --bandwidth and --shell

Salvatore Bonaccorso carnil at debian.org
Sat Jan 7 13:33:26 UTC 2017


Source: firejail
Version: 0.9.44.2-1
Severity: grave
Tags: upstream security patch fixed-upstream
Justification: user security hole
Forwarded: https://github.com/netblue30/firejail/issues/1023

Hi

There is no CVE assigned for this one yet: 

https://github.com/netblue30/firejail/issues/1023
https://github.com/netblue30/firejail/commit/5d43fdcd215203868d440ffc42036f5f5ffc89fc

CVE requested here:

http://www.openwall.com/lists/oss-security/2017/01/07/3

Regards,
Salvatore



More information about the Secure-testing-team mailing list