mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 09:12:08 +00:00
809 B
809 B
CVE-2019-12439
Description
bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories in /tmp as a mount point. In some particular configurations (related to XDG_RUNTIME_DIR), a local attacker may abuse this flaw to prevent other users from executing bubblewrap or potentially execute code.
POC
Reference
- https://github.com/projectatomic/bubblewrap/issues/304
- https://github.com/projectatomic/bubblewrap/issues/304
Github
No PoCs found on GitHub currently.