ZeroHour

CVE-2020-13753

CVSS 3.1
10.0 critical
EPSS
3%p88
Published
()
Modified
Description

The bubblewrap sandbox of WebKitGTK and WPE WebKit, prior to 2.28.3, failed to properly block access to CLONE_NEWUSER and the TIOCSTI ioctl. CLONE_NEWUSER could potentially be used to confuse xdg-desktop-portal, which allows access outside the sandbox. TIOCSTI can be used to directly execute commands outside the sandbox by writing to the controlling terminal's input buffer, similar to CVE-2017-5226.

Vendors
webkitgtkwpewebkitfedoraprojectdebiancanonicalopensuse
Products
webkitgtk, wpe webkit, fedora, debian linux, ubuntu linux, leap
Weakness
CWE-20
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.