Impact
A flaw was identified in deepseek-harness through version 0.1.7‑rc.2, located in packages/sandbox/sandbox-local/src/profiles.ts of the Landlock Backend component. The vulnerability permits manipulation that results in improper isolation or compartmentalization of sandboxed processes, potentially allowing a local attacker to escape the intended containment boundaries. The weakness corresponds to CWE‑653. Based on the description, it is inferred that an attacker could potentially escape the sandbox, but this is not explicitly documented.
Affected Systems
The product deepseek‑ai deepseek‑harness is affected through release 0.1.7‑rc.2. No other vendors or versions are reported as vulnerable.
Risk and Exploitability
The CVSS score of 4.8 indicates moderate severity. The vulnerability can only be exploited from a local context, as the description states that an attacker must have local presence. The EPSS score is unavailable, and the issue is not listed in CISA KEV. Therefore, while exploitation requires local access, the moderate score and lack of widespread exploitation data suggest a moderate risk to systems that run deepseek‑harness locally.
OpenCVE Enrichment