CVE-2015-8660
The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 22.4%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a crafted application.
- CVSS 3.1
- 6.7 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 22.37% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- linux/linux kernel
- Source
- secalert@redhat.com
References
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=acff81ec2c79492b180fade3c2894425cd35a545Vendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00039.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00040.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00043.htmlMailing List, Third Party Advisory
- http://packetstormsecurity.com/files/135151/Ubuntu-14.04-LTS-15.10-overlayfs-Local-Root.htmlThird Party Advisory, VDB Entry
- http://rhn.redhat.com/errata/RHSA-2016-1532.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-1539.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-1541.htmlThird Party Advisory
- http://www.openwall.com/lists/oss-security/2015/12/23/5Mailing List, Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.htmlThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.htmlThird Party Advisory
- http://www.securityfocus.com/bid/79671Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1034548Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2857-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2857-2Third Party Advisory
- http://www.ubuntu.com/usn/USN-2858-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2858-2Third Party Advisory
- http://www.ubuntu.com/usn/USN-2858-3Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1291329Issue Tracking, Third Party Advisory
- https://github.com/torvalds/linux/commit/acff81ec2c79492b180fade3c2894425cd35a545Vendor Advisory
- https://www.exploit-db.com/exploits/39166/Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/39230/Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/40688/Third Party Advisory, VDB Entry
- http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=acff81ec2c79492b180fade3c2894425cd35a545Vendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00039.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00040.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-03/msg00043.htmlMailing List, Third Party Advisory
- http://packetstormsecurity.com/files/135151/Ubuntu-14.04-LTS-15.10-overlayfs-Local-Root.htmlThird Party Advisory, VDB Entry
- http://rhn.redhat.com/errata/RHSA-2016-1532.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-1539.htmlThird Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.