CVE-2013-1858
Publication date 5 April 2013
Last updated 24 July 2024
Ubuntu priority
Description
The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags, which allows local users to gain privileges by calling chroot and leveraging the sharing of the / directory between a parent process and a child process.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| linux | ||
| linux-armadaxp | ||
| linux-ec2 | ||
| linux-fsl-imx51 | ||
| linux-linaro-omap | ||
| linux-linaro-shared | ||
| linux-linaro-vexpress | ||
| linux-lts-backport-maverick | ||
| linux-lts-backport-oneiric | ||
| linux-lts-quantal | ||
| linux-mvl-dove | ||
| linux-qcm-msm | ||
| linux-ti-omap4 | ||