LWN.net Logo

kernel: unauthorized file access

Package(s):kernel CVE #(s):CVE-2012-0055
Created:February 13, 2012 Updated:February 15, 2012
Description: From the Ubuntu advisory:

Andy Whitcroft discovered a that the Overlayfs filesystem was not doing the extended permission checks needed by cgroups and Linux Security Modules (LSMs). A local user could exploit this to by-pass security policy and access files that should not be accessible.

Alerts:
Ubuntu USN-1363-1 2012-02-13
Ubuntu USN-1364-1 2012-02-13
Ubuntu USN-1384-1 2012-03-06

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds