LXC User-NIC Vulnerability: Unauthorized Network Interface Creation and Naming

LXC User-NIC Vulnerability: Unauthorized Network Interface Creation and Naming

CVE-2017-5985 · LOW Severity

AV:L/AC:L/AU:N/C:N/I:P/A:N

lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveraging lack of netns ownership check.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.