Skip to main content

Vendor/product archive

projectatomic / bubblewrap CVEs

Beta · best-effort

3 CVEs tagged to projectatomic / bubblewrap1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2019-12439

Published May 29, 2019

bubblewrap.c in Bubblewrap before 0.3.3 misuses temporary directories in /tmp as a mount point. In some particular configurations (related to XDG_RUNTIME_DIR), a local attacker ma…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-5226

Published Mar 29, 2017

When executing a program via the bubblewrap sandbox, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input b…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1