Allowing SUID root programs to be executed from containers mounted by normal users could be used for privilege escalation. Therefore, mount containers with flag MS_NOSUID if the user is not root.
Logged In: YES user_id=1281148 Originator: YES
Fixed with release 1.0-1.
Log in to post a comment.
Logged In: YES
user_id=1281148
Originator: YES
Fixed with release 1.0-1.