Firejail before 0.9.44.4, when running a bandwidth command, allows local users to gain root privileges via the --shell argument.
[
{
"digest": {
"length": 2904.0,
"function_hash": "28261504542817098868054034713011263418"
},
"target": {
"file": "src/firejail/bandwidth.c",
"function": "bandwidth_pid"
},
"id": "CVE-2017-5207-01daf350",
"source": "https://github.com/netblue30/firejail/commit/5d43fdcd215203868d440ffc42036f5f5ffc89fc",
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function"
},
{
"digest": {
"line_hashes": [
"290453404034243233217190666911205395599",
"8299027115966790884720039067240969398",
"318387130828531712385738208614794895044",
"140571646518461642129422015127934483537",
"77631700657852663730048582463922431774",
"78586373029910059898863342948130261554",
"218470300220291495846676001308233938793",
"260074346880288965622564169841675703343",
"172299229254497647324120647514870898061",
"32521874796685530707364150137647153688",
"86889861078299467395585089951639915327"
],
"threshold": 0.9
},
"target": {
"file": "src/firejail/bandwidth.c"
},
"id": "CVE-2017-5207-5e612a4e",
"source": "https://github.com/netblue30/firejail/commit/5d43fdcd215203868d440ffc42036f5f5ffc89fc",
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line"
}
]