Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's handling of mount propagation settings has been addressed. The issue arose because the 'do_change_type()' function allowed changes to propagation settings for mounts that were unmounted or not owned by the caller's mount namespace. This vulnerability could lead to improper permission handling, potentially allowing unauthorized modifications to mount settings. The fix ensures that propagation changes can only be made for mounts within the caller's namespace, aligning the permission checks with standard mount system call behavior.
Exploitation of this vulnerability could lead to unauthorized changes in mount propagation settings, potentially allowing for manipulation of the mount namespace in ways that could disrupt system operations or security.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.