|
|
Subscribe / Log in / New account

vzctl: insecure ploop-based containers

Package(s):vzctl CVE #(s):CVE-2015-6927
Created:September 14, 2015 Updated:January 11, 2017
Description: From the Debian advisory:

It was discovered that vzctl, a set of control tools for the OpenVZ server virtualization solution, determined the storage layout of containers based on the presence of an XML file inside the container. An attacker with local root privileges in a simfs-based container could gain control over ploop-based containers. Further information on the prerequites of such an attack can be found at https://src.openvz.org/projects/OVZL/repos/vzctl/commits/...

Alerts:
Gentoo 201701-30 vzctl 2017-01-11
Debian DSA-3357-1 vzctl 2015-09-13

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds