CVE-2013-6441
published 2014-02-14CVE-2013-6441: The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain…
PriorityP427high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.50%
39.4th percentile
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | lxc | < lxc 1.0.0-1 (bookworm) | lxc 1.0.0-1 (bookworm) |
| linuxcontainers | lxc | <= 0.9.0 | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
| linuxcontainers | lxc | — | — |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2LOW
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
LXC vulnerability
vendor_ubuntu·2014-02-12
CVE-2013-6441 LXC vulnerability
Title: LXC vulnerability
Summary: LXC would allow unintended access to the host, bypassing intended
confinement.
Florian Sagar discovered that the LXC sshd template set incorrect mount
permissions. An attacker could possibly use this flaw to cause privilege
escalation on the host.
Instructions: After a standard system update you need to recreate LXC containers created
with the sshd template to make all the necessary changes.
Red Hat
lxc: sshd template allow privilege escalation on host
vendor_redhat·2013-12-16·CVSS 7.2
CVE-2013-6441 [HIGH] lxc: sshd template allow privilege escalation on host
lxc: sshd template allow privilege escalation on host
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.
Statement: This issue did not affect the versions of libvirt (which includes lxc) as shipped with Red Hat Enterprise Linux 6 as they do not include the template file lxc-sshd.in.
Package: libvirt (Red Hat Enterprise Linux 6) - Not affected
Package: libvirt (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2013-6441: lxc - The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses rea...
vendor_debian·2013·CVSS 7.2
CVE-2013-6441 [HIGH] CVE-2013-6441: lxc - The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses rea...
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.
Scope: local
bookworm: resolved (fixed in 1.0.0-1)
bullseye: resolved (fixed in 1.0.0-1)
forky: resolved (fixed in 1.0.0-1)
sid: resolved (fixed in 1.0.0-1)
trixie: resolved (fixed in 1.0.0-1)
GHSA
GHSA-5m9h-29cp-r3fg: The lxc-sshd template (templates/lxc-sshd
ghsa_unreviewed·2022-05-17
CVE-2013-6441 [HIGH] GHSA-5m9h-29cp-r3fg: The lxc-sshd template (templates/lxc-sshd
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.
OSV
CVE-2013-6441: The lxc-sshd template (templates/lxc-sshd
osv·2014-02-14·CVSS 7.2
CVE-2013-6441 [HIGH] CVE-2013-6441: The lxc-sshd template (templates/lxc-sshd
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.
No detection rules found.
No public exploits indexed.
http://www.ubuntu.com/usn/USN-2104-1https://bugs.launchpad.net/ubuntu/%2Bsource/lxc/%2Bbug/1261045https://github.com/dotcloud/lxc/pull/1https://github.com/lxc/lxc/commit/f4d5cc8e1f39d132b61e110674528cac727ae0e2http://www.ubuntu.com/usn/USN-2104-1https://bugs.launchpad.net/ubuntu/%2Bsource/lxc/%2Bbug/1261045https://github.com/dotcloud/lxc/pull/1https://github.com/lxc/lxc/commit/f4d5cc8e1f39d132b61e110674528cac727ae0e2
2014-02-14
Published