CVE-2011-4099

The capsh program in libcap before 2.22 does not change the current working directory when the --chroot option is specified, which allows local users to bypass the chroot restrictions via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:libcap:libcap:*:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.00:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.01:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.02:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.03:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.04:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.05:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.06:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.07:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.08:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.09:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.10:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.11:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.12:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.13:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.14:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.15:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.16:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.17:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.18:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.19:*:*:*:*:*:*:*
cpe:2.3:a:libcap:libcap:2.20:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-02-08 00:55

Updated : 2024-02-28 12:20


NVD link : CVE-2011-4099

Mitre link : CVE-2011-4099

CVE.ORG link : CVE-2011-4099


JSON object : View

Products Affected

libcap

  • libcap
CWE
CWE-264

Permissions, Privileges, and Access Controls