fs/namespace.c in the Linux kernel before 4.0.2 does not properly support mount connectivity, which allows local users to read arbitrary files by leveraging user-namespace root access for deletion of a file or directory.
References
Configurations
History
No history.
Information
Published : 2016-05-02 10:59
Updated : 2024-02-04 18:53
NVD link : CVE-2015-4176
Mitre link : CVE-2015-4176
CVE.ORG link : CVE-2015-4176
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor