CyberSec.Space Logo
返回 CVE 浏览器

CVE-2017-5226

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1250%
EPSS Percentile2.08th
Published2017年3月29日
Last Modified2026年5月13日

Vulnerability Description

When executing a program via the bubblewrap sandbox, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the sandbox.

Affected Platforms (CPE)

📦
Projectatomic

Bubblewrap

<= 0.1.5

References & Advisories

相关漏洞威胁