[pkg-lxc-devel] Bug#905586: lxc: CVE-2018-6556: lxc-user-nic allows unprivileged users to open arbitrary files

Simon McVittie smcv at debian.org
Tue Aug 14 00:14:30 BST 2018


On Mon, 06 Aug 2018 at 19:08:37 +0200, Salvatore Bonaccorso wrote:
> Forwarded: https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1783591

Patches from the upstream bug for the 2.0 branch:
https://launchpadlibrarian.net/381944814/0001-utils-add-LXC_PROC_PID_FD_LEN_stable-2.0.patch
https://launchpadlibrarian.net/380888109/stable-2.0-lxc-user-nic-verify-file-descriptor.patch
also attached.

    smcv
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-utils-add-LXC_PROC_PID_FD_LEN_stable-2.0.patch
Type: text/x-diff
Size: 1022 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-lxc-devel/attachments/20180814/19477283/attachment.patch>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: stable-2.0-lxc-user-nic-verify-file-descriptor.patch
Type: text/x-diff
Size: 3454 bytes
Desc: not available
URL: <http://alioth-lists.debian.net/pipermail/pkg-lxc-devel/attachments/20180814/19477283/attachment-0001.patch>


More information about the Pkg-lxc-devel mailing list