Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

cves:exploit: prevent cve-2023-2640 overlayfs exploit on ubuntu #1306

Merged

Conversation

tixxdz
Copy link
Member

@tixxdz tixxdz commented Aug 1, 2023

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2640

Prevents copying up security.capability xattr on overlayfs from a user namespace, making it a nop.

@tixxdz tixxdz requested a review from a team as a code owner August 1, 2023 20:40
@tixxdz tixxdz force-pushed the pr/tixxdz/prevent-cve-2023-2640-overlayfs-ubuntu-exploit branch from fa72942 to 3117483 Compare August 1, 2023 20:46
@tixxdz tixxdz force-pushed the pr/tixxdz/prevent-cve-2023-2640-overlayfs-ubuntu-exploit branch from 3117483 to daac0a1 Compare August 2, 2023 13:15
@jrfastab jrfastab merged commit a0874f3 into main Aug 2, 2023
24 checks passed
@jrfastab jrfastab deleted the pr/tixxdz/prevent-cve-2023-2640-overlayfs-ubuntu-exploit branch August 2, 2023 17:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants