cbcvebase.
CVE-2015-2925
published 2015-11-16

CVE-2015-2925: The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users…

PriorityP422medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
1.25%
66.3th percentile
The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a "double-chroot attack."

Affected

20 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianlinux< linux 4.2.1-1 (bookworm)linux 4.2.1-1 (bookworm)
linuxlinux_kernel< 3.2.723.2.72
linuxlinux_kernel>= 0 < 4.2.1-14.2.1-1
linuxlinux_kernel>= 0 < 4.2.1-14.2.1-1
linuxlinux_kernel>= 0 < 4.2.1-14.2.1-1
linuxlinux_kernel>= 0 < 4.2.1-14.2.1-1
linuxlinux_kernel>= 0 < 3.13.0-67.1103.13.0-67.110
linuxlinux_kernel>= 3.11 < 3.12.493.12.49
linuxlinux_kernel>= 3.13 < 3.14.553.14.55
linuxlinux_kernel>= 3.15 < 3.16.353.16.35
linuxlinux_kernel>= 3.17 < 3.18.233.18.23
linuxlinux_kernel>= 3.19 < 4.1.114.1.11
linuxlinux_kernel>= 3.3 < 3.4.1103.4.110
linuxlinux_kernel>= 3.5 < 3.10.913.10.91
linuxlinux_kernel>= 4.2 < 4.2.44.2.4

CVSS provenance

nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
osv6.9MEDIUM
vendor_debian6.9MEDIUM
vendor_redhat6.9MEDIUM
vendor_ubuntu6.9MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.