Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.openwall.com/lists/oss-security/2017/01/05/4 | third party advisory mailing list |
http://www.openwall.com/lists/oss-security/2017/01/06/2 | third party advisory mailing list |