Debian Lxd vulnerabilities
23 known vulnerabilities affecting debian/lxd.
Total CVEs
23
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH7MEDIUM5LOW8
Vulnerabilities
Page 2 of 2
CVE-2016-1581LOWCVSS 5.52016
CVE-2016-1581 [MEDIUM] CVE-2016-1581: lxd - LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs.img when s...
LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs.img when setting up a loop based ZFS pool, which allows local users to copy and read data from arbitrary containers via unspecified vectors.
Scope: local
bookworm: resolved
trixie: resolved
debian
CVE-2015-8222LOWCVSS 4.62015
CVE-2015-8222 [MEDIUM] CVE-2015-8222: lxd - The lxd-unix.socket systemd unit file in the Ubuntu lxd package before 0.20-0ubu...
The lxd-unix.socket systemd unit file in the Ubuntu lxd package before 0.20-0ubuntu4.1 uses world-readable permissions for /var/lib/lxd/unix.socket, which allows local users to gain privileges via unspecified vectors.
Scope: local
bookworm: resolved
trixie: resolved
debian
CVE-2015-1340LOWCVSS 7.02015
CVE-2015-1340 [HIGH] CVE-2015-1340: lxd - LXD before version 0.19-0ubuntu5 doUidshiftIntoContainer() has an unsafe Chmod()...
LXD before version 0.19-0ubuntu5 doUidshiftIntoContainer() has an unsafe Chmod() call that races against the stat in the Filepath.Walk() function. A symbolic link created in that window could cause any file on the system to have any mode of the attacker's choice.
Scope: local
bookworm: resolved
trixie: resolved
debian
← Previous2 / 2