CVE-2022-31214
Summary
| CVE | CVE-2022-31214 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-06-09 16:15:00 UTC |
| Updated | 2023-11-07 03:47:00 UTC |
| Description | A Privilege Context Switching issue was discovered in join.c in Firejail 0.9.68. By crafting a bogus Firejail container that is accepted by the Firejail setuid-root program as a join target, a local attacker can enter an environment in which the Linux user namespace is still the initial user namespace, the NO_NEW_PRIVS prctl is not activated, and the entered mount namespace is under the attacker's control. In this way, the filesystem layout can be adjusted to gain root privileges through execution of available setuid-root binaries such as su or sudo. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 35 Update: firejail-0.9.70-1.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: firejail-0.9.70-1.fc36 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| Release Notes | Firejail |
MISC |
firejail.wordpress.com |
|
| oss-security - firejail: local root exploit reachable via --join logic
(CVE-2022-31214) |
MISC |
www.openwall.com |
|
| [SECURITY] Fedora 37 Update: firejail-0.9.70-1.fc37 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] [DLA 3061-1] firejail security update |
MLIST |
lists.debian.org |
|
| [SECURITY] Fedora 35 Update: firejail-0.9.70-1.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 37 Update: firejail-0.9.70-1.fc37 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: firejail-0.9.70-1.fc36 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Firejail: Local Privilege Escalation (GLSA 202305-19) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| Debian -- Security Information -- DSA-5167-1 firejail |
DEBIAN |
www.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 179487 Debian Security Update for firejail (DSA 5167-1)
- 179974 Debian Security Update for firejail (DLA 3061-1)
- 183458 Debian Security Update for firejail (CVE-2022-31214)
- 283117 Fedora Security Update for firejail (FEDORA-2022-e8e9b50a33)
- 283118 Fedora Security Update for firejail (FEDORA-2022-827d9ce8ac)
- 710724 Gentoo Linux Firejail Local Privilege Escalation Vulnerability (GLSA 202305-19)