The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
References
Configurations
History
No history.
Information
Published : 2017-04-14 18:59
Updated : 2025-04-20 01:37
NVD link : CVE-2016-6299
Mitre link : CVE-2016-6299
CVE.ORG link : CVE-2016-6299
JSON object : View
Products Affected
fedoraproject
- fedora
mock_project
- scm_plugin
CWE
CWE-264
Permissions, Privileges, and Access Controls