Comment 40 for bug 1639345

Revision history for this message
Tyler Hicks (tyhicks) wrote : Re: [Bug 1639345] Re: lxc-attach to malicious container allows access to host

On 11/15/2016 04:59 PM, Seth Forshee wrote:
> On the kernel side there was previously a CVE assigned for the ptrace
> issue - CVE-2015-8709. That restricted ptrace if the real, effective,
> and saved uids and gids of the process were not mapped into the ptracing
> process's user ns, but that doesn't forbid ptrace under the
> circumstances here.

Please don't reuse that CVE ID for this issue. It is clearly a different
issue and reusing the CVE ID will only confuse everyone.