CVE-2014-1425

cmanager 0.32 does not properly enforce nesting when modifying cgroup properties, which allows local users to set cgroup values for all cgroups via unspecified vectors.
References
Link Resource
http://www.ubuntu.com/usn/USN-2451-1 Vendor Advisory
http://www.ubuntu.com/usn/USN-2451-1 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:linuxcontainers:cgmanager:0.32:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:14.10:*:*:*:*:*:*:*

History

21 Nov 2024, 02:04

Type Values Removed Values Added
References () http://www.ubuntu.com/usn/USN-2451-1 - Vendor Advisory () http://www.ubuntu.com/usn/USN-2451-1 - Vendor Advisory

Information

Published : 2015-01-07 19:59

Updated : 2024-11-21 02:04


NVD link : CVE-2014-1425

Mitre link : CVE-2014-1425

CVE.ORG link : CVE-2014-1425


JSON object : View

Products Affected

linuxcontainers

  • cgmanager

canonical

  • ubuntu_linux
CWE
CWE-264

Permissions, Privileges, and Access Controls