The service daemon in CRIU does not properly restrict access to non-dumpable processes, which allows local users to obtain sensitive information via (1) process dumps or (2) ptrace access.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2016-06-07T14:00:00
Updated: 2024-08-06T06:41:09.020Z
Reserved: 2015-07-01T00:00:00
Link: CVE-2015-5231
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2016-06-07T14:06:05.510
Modified: 2018-10-30T16:27:35.843
Link: CVE-2015-5231
Redhat