CVE-2016-10117 describes a privilege escalation vulnerability in Firejail, affecting firejail_project firejail. This flaw allows local users to gain elevated privileges by exploiting unrestricted access to the --tmpfs option, specifically by mounting over critical system directories like /etc. Rated with a CVSS score of 7.8 (High), the vulnerability has a low attack complexity and requires local user access, but can lead to high impacts on confidentiality, integrity, and availability. There is no evidence of active exploitation, nor are there publicly available exploits in Metasploit or ExploitDB, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:firejail_project:firejail:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.