High severity7.8NVD Advisory· Published Nov 28, 2016· Updated May 6, 2026
CVE-2015-1328
CVE-2015-1328
Description
The overlayfs implementation in the linux (aka Linux kernel) package before 3.19.0-21.21 in Ubuntu through 15.04 does not properly check permissions for file creation in the upper filesystem directory, which allows local users to obtain root access by leveraging a configuration in which overlayfs is permitted in an arbitrary mount namespace.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.exploit-db.com/exploits/40688/nvdExploitVDB Entry
- seclists.org/oss-sec/2015/q2/717nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/75206nvdThird Party AdvisoryVDB Entry
- people.canonical.com/~ubuntu-security/cve/2015/CVE-2015-1328.htmlnvdVendor Advisory
- security-tracker.debian.org/tracker/CVE-2015-1328nvdThird Party Advisory
- www.exploit-db.com/exploits/37292/nvd
News mentions
0No linked articles in our index yet.