CVE-2015-5228

The service daemon in CRIU creates log and dump files insecurely, which allows local users to create arbitrary files and take ownership of existing files via unspecified vectors related to a directory path.
Configurations

Configuration 1 (hide)

cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:criu:checkpoint\/restore_in_userspace:-:*:*:*:*:*:*:*

Information

Published : 2016-06-07 14:06

Updated : 2018-10-30 16:27


NVD link : CVE-2015-5228

Mitre link : CVE-2015-5228


JSON object : View

Products Affected

opensuse

  • opensuse

criu

  • checkpoint\/restore_in_userspace
CWE
CWE-264

Permissions, Privileges, and Access Controls