Back to search
CVE-2015-5228
Published: Jun 7, 2016
Modified: Aug 6, 2024
PUBLISHED
Description
The service daemon in CRIU creates log and dump files insecurely, which allows local users to create arbitrary files and take ownership of existing files via unspecified vectors related to a directory path.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20150825 CVE-2015-5228 & CVE-2015-5231 in the criu service daemon
mailing-list
x_refsource_MLIST
openSUSE-SU-2015:1593
vendor-advisory
x_refsource_SUSE
[CRIU] 20150825 Hardening the criu service daemon
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=1255782
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now