Bugzilla – Bug 945060
VUL-0: CVE-2015-3631: docker: volume mounts allow LSM profile escalation
Last modified: 2019-05-01 16:52:20 UTC
rh#1219065 Docker Engine before 1.6.1 allows local users to set arbitrary Linux Security Modules (LSM) and docker_t policies via an image that allows volumes to override files in /proc. References: https://bugzilla.redhat.com/show_bug.cgi?id=1219065 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-3631 http://people.canonical.com/~ubuntu-security/cve/2015/CVE-2015-3631.html http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3631 http://www.cvedetails.com/cve/CVE-2015-3631/
dup of 930235 *** This bug has been marked as a duplicate of bug 930235 ***