Symlink Attack in Libcontainer and Docker Engine
Moderate severity
GitHub Reviewed
Published
Feb 15, 2022
to the GitHub Advisory Database
•
Updated Jan 9, 2023
Description
Reviewed
May 20, 2021
Published to the GitHub Advisory Database
Feb 15, 2022
Last updated
Jan 9, 2023
Libcontainer and Docker Engine before 1.6.1 opens the file-descriptor passed to the pid-1 process before performing the chroot, which allows local users to gain privileges via a symlink attack in an image.
References