Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-1576
Description:The overlayfs implementation in the Linux kernel through 4.5.2 does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an overlayfs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-1576
http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=e9f57ebcba563e0cd532926cab83c92bb4d79360
http://www.halfdog.net/Security/2016/OverlayfsOverFusePrivilegeEscalation/
https://launchpadlibrarian.net/235300093/0005-overlayfs-Be-more-careful-about-copying-up-sxid-file.patch
https://launchpadlibrarian.net/235300225/0006-overlayfs-Propogate-nosuid-from-lower-and-upper-moun.patch
http://www.openwall.com/lists/oss-security/2016/02/24/8
http://www.openwall.com/lists/oss-security/2021/10/18/1




© 1998-2025 E-Soft Inc. All rights reserved.