Nathan Williams discovered that overlayfs in the Linux kernel incorrectly handled setattr operations. A local unprivileged attacker could use this to create files with administrative permission attributes and execute arbitrary code with elevated privileges.
{ "availability": "No subscription required", "binaries": [ { "nfs-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "sata-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "pata-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "nic-usb-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "block-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "irda-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23": "4.2.0-23.28~14.04.1", "multipath-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "speakup-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "input-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "nic-shared-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "ppp-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-image-extra-4.2.0-23-generic": "4.2.0-23.28~14.04.1", "usb-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "plip-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "input-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "multipath-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "mouse-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc-e500mc": "4.2.0-23.28~14.04.1", "linux-cloud-tools-4.2.0-23-generic": "4.2.0-23.28~14.04.1", "pata-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "nfs-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "irda-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "virtio-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-powerpc64-smp": "4.2.0-23.28~14.04.1", "vlan-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-powerpc-e500mc": "4.2.0-23.28~14.04.1", "pcmcia-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "fb-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "floppy-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "irda-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "irda-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "ipmi-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "squashfs-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "pata-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "fs-secondary-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-cloud-tools-4.2.0-23": "4.2.0-23.28~14.04.1", "nic-usb-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "plip-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "md-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "fat-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "nic-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-generic": "4.2.0-23.28~14.04.1", "scsi-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-powerpc64-emb": "4.2.0-23.28~14.04.1", "fat-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "ipmi-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "message-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "plip-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-cloud-tools-4.2.0-23-dbgsym": "4.2.0-23.28~14.04.1", "nic-usb-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "fat-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "storage-core-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "scsi-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "nic-usb-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "parport-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-tools-4.2.0-23": "4.2.0-23.28~14.04.1", "linux-lts-wily-udebs-powerpc-smp": "4.2.0-23.28~14.04.1", "mouse-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "kernel-image-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "storage-core-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-cloud-tools-4.2.0-23-lowlatency": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-generic": "4.2.0-23.28~14.04.1", "nic-shared-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-udebs-generic-lpae": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-powerpc-smp": "4.2.0-23.28~14.04.1", "nfs-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc-smp": "4.2.0-23.28~14.04.1", "mouse-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "mouse-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "crypto-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "ppp-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "kernel-image-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-generic-lpae-dbgsym": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-powerpc64-emb": "4.2.0-23.28~14.04.1", "fs-core-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "block-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "plip-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "usb-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "nic-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "nic-pcmcia-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "speakup-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "storage-core-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "vlan-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "speakup-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "usb-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "input-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc-smp-dbgsym": "4.2.0-23.28~14.04.1", "nic-shared-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "squashfs-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "ppp-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "nfs-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-udebs-powerpc-e500mc": "4.2.0-23.28~14.04.1", "virtio-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "sata-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "md-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "nic-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "scsi-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "firewire-core-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "pcmcia-storage-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "input-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "virtio-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "block-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "vlan-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "fs-core-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "floppy-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc64-smp-dbgsym": "4.2.0-23.28~14.04.1", "squashfs-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "message-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "fat-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-lowlatency": "4.2.0-23.28~14.04.1", "multipath-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-generic-dbgsym": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-powerpc64-smp": "4.2.0-23.28~14.04.1", "fs-secondary-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-lowlatency": "4.2.0-23.28~14.04.1", "ppp-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "scsi-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "firewire-core-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "crypto-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "message-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "kernel-image-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "scsi-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "speakup-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "storage-core-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "nic-shared-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-udebs-generic": "4.2.0-23.28~14.04.1", "squashfs-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "nic-shared-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "nic-usb-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "fs-core-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "fs-core-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "firewire-core-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "squashfs-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "usb-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-lowlatency": "4.2.0-23.28~14.04.1", "message-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-generic-lpae": "4.2.0-23.28~14.04.1", "linux-lts-wily-udebs-powerpc64-smp": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-powerpc-smp": "4.2.0-23.28~14.04.1", "md-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "sata-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "vlan-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "virtio-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc-e500mc-dbgsym": "4.2.0-23.28~14.04.1", "fat-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "md-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "parport-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "crypto-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "ipmi-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "kernel-image-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "serial-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "pata-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc64-smp": "4.2.0-23.28~14.04.1", "ipmi-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "kernel-image-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "fs-core-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "nic-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "fs-secondary-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc64-emb": "4.2.0-23.28~14.04.1", "linux-tools-4.2.0-23-generic": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-generic-lpae": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-generic-lpae": "4.2.0-23.28~14.04.1", "crypto-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "plip-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "crypto-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "block-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "input-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "sata-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "nfs-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "fs-secondary-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "ipmi-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "firewire-core-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "block-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "linux-lts-wily-tools-4.2.0-23-dbgsym": "4.2.0-23.28~14.04.1", "vlan-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "md-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "nic-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "usb-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "parport-modules-4.2.0-23-generic-lpae-di": "4.2.0-23.28~14.04.1", "speakup-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "floppy-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "multipath-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "linux-headers-4.2.0-23-powerpc-e500mc": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-lowlatency-dbgsym": "4.2.0-23.28~14.04.1", "linux-image-4.2.0-23-powerpc64-emb-dbgsym": "4.2.0-23.28~14.04.1", "parport-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "multipath-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "floppy-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "irda-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "fs-secondary-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "storage-core-modules-4.2.0-23-generic-di": "4.2.0-23.28~14.04.1", "ppp-modules-4.2.0-23-powerpc64-smp-di": "4.2.0-23.28~14.04.1", "parport-modules-4.2.0-23-powerpc-smp-di": "4.2.0-23.28~14.04.1", "mouse-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1", "sata-modules-4.2.0-23-powerpc-e500mc-di": "4.2.0-23.28~14.04.1" } ] }