It is reported that VServer may be used in order to disclose memory contents and to deny service to the host operating system and other virtual servers. The vulnerability exists due to weak sharing permissions on procfs mounted directories. It is reported that a user residing in a VServer may make changes to a procfs mounted directory any changes made will affect the host operating system and all VServers that exist. An attacker may exploit this issue to disclose information or initiate a denial of service.
It is reported that VServer may be used in order to disclose memory contents and to deny service to the host operating system and other virtual servers. The vulnerability exists due to weak sharing permissions on procfs mounted directories. It is reported that a user residing in a VServer may make changes to a procfs mounted directory any changes made will affect the host operating system and all VServers that exist. An attacker may exploit this issue to disclose information or initiate a denial of service.