Comment 0 for bug 1527374

Revision history for this message
Serge Hallyn (serge-hallyn) wrote : privilege escalation on attach through ptrace

A kernel bug in user namespaces allows root in a container to ptrace host-root-owned tasks during a window of opportunity during lxc-attach / 'lxc exec', before they drop privilege by doing setuid to the container root uid.