Sploitus

CVE-2021-26910

1 known exploit for CVE-2021-26910

Firejail before 0.9.64.4 allows attackers to bypass intended access restrictions because there is a TOCTOU race condition between a stat operation and an OverlayFS mount operation.

Affected products
Alt Linux, Firejail, Linuxmint, Suse, Ubuntu
Firejail Project Firejail
< 0.9.64.4
Fix
Available
CVSS 3.1
7.8 HIGH
EPSS
0.4% (38th percentile)
Weakness
CWE-367
NVD status
Modified
Published
2021-02-08
CVE-2021-26910 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2021-26910

Proof-of-concept code and exploit modules indexed by Sploitus