Low severity3.3NVD Advisory· Published Mar 14, 2017· Updated May 13, 2026
CVE-2017-5985
CVE-2017-5985
Description
lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveraging lack of netns ownership check.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- github.com/lxc/lxc/commit/16af238036a5464ae8f2420ed3af214f0de875f9nvdIssue TrackingPatch
- www.openwall.com/lists/oss-security/2017/03/09/4nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/96777nvdThird Party AdvisoryVDB Entry
- www.ubuntu.com/usn/USN-3224-1nvdThird Party Advisory
- bugs.launchpad.net/ubuntu/+source/lxc/+bug/1654676nvdThird Party Advisory
- lists.linuxcontainers.org/pipermail/lxc-devel/2017-March/015535.htmlnvdVendor Advisory
- lists.opensuse.org/opensuse-security-announce/2019-05/msg00073.htmlnvd
News mentions
0No linked articles in our index yet.