CVE-2015-1344: Canonical Lxcfs

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

The do_write_pids function in lxcfs.c in LXCFS before 0.12 does not properly check permissions, which allows local users to gain privileges by writing a pid to the tasks file.

Affected products

  • Canonical Lxcfs: up to and including 0.11
  • Canonical Ubuntu Linux: version 15.04 only; version 15.10 only

Published 2015-12-07. Last modified 2026-06-17.