HIGH 8.1 Go
LXD vulnerable to Race Condition
GHSA-8mpq-fmr3-6jxv · CVE-2015-1340 · GO-2021-0071
Published · Modified
Description
LXD before version 0.19-0ubuntu5 doUidshiftIntoContainer() has an unsafe Chmod() call that races against the stat in the Filepath.Walk() function. A symbolic link created in that window could cause any file on the system to have any mode of the attacker's choice.
Specific Go Packages Affected
github.com/lxc/lxd/shared
References
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2015-1340
- WEB https://github.com/lxc/lxd/pull/1189
- WEB https://github.com/lxc/lxd/commit/19c6961cc1012c8a529f20807328a9357f5034f4
- WEB https://bugs.launchpad.net/ubuntu/+source/lxd/+bug/1502270
- PACKAGE https://github.com/lxc/lxd
- WEB https://pkg.go.dev/vuln/GO-2021-0071
Ready to move
Start Securing
Free, no credit card | First findings in minutes