VYPR
Unrated severityNVD Advisory· Published Feb 14, 2014· Updated Apr 29, 2026

CVE-2013-6441

CVE-2013-6441

Description

The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifying the init file.

Affected products

24
  • Linuxcontainers/Lxc24 versions
    cpe:2.3:a:linuxcontainers:lxc:*:*:*:*:*:*:*:*+ 23 more
    • cpe:2.3:a:linuxcontainers:lxc:*:*:*:*:*:*:*:*range: <=0.9.0
    • cpe:2.3:a:linuxcontainers:lxc:0.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.6.1:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.6.2:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.6.3:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.6.4:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.6.5:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.1:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.2:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.3:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.4:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.4.1:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.4.2:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.7.5:*:*:*:*:*:*:*
    • cpe:2.3:a:linuxcontainers:lxc:0.8.0:*:*:*:*:*:*:*

Patches

1
f4d5cc8e1f39

Vulnerability mechanics

Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

4

News mentions

0

No linked articles in our index yet.