CVE-2015-2925

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
6.9
MEDIUM
Affected
1
PROJECT

Description

The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a "double-chroot attack."

Linux kernel source tree
GitHubGitHub
237K