Medium severity4.6NVD Advisory· Published Feb 7, 2017· Updated May 13, 2026
CVE-2016-2781
CVE-2016-2781
Description
chroot in GNU coreutils, when used with --userspec, allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.openwall.com/lists/oss-security/2016/02/28/2nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/02/28/3nvdMailing ListThird Party Advisory
- lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3Envd
News mentions
0No linked articles in our index yet.