CVE-2015-3629

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
18/05/2015
Last modified:
12/04/2025

Description

Libcontainer 1.6.0, as used in Docker Engine, allows local users to escape containerization ("mount namespace breakout") and write to arbitrary file on the host system via a symlink attack in an image when respawning a container.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:docker:libcontainer:1.6.0:*:*:*:*:docker:*:*
cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*