The Libseccomp Project maintains a system call filtering library designed to support seccomp-based sandboxing and privilege restriction in Linux applications and containers, with a narrow but strategically important deployment footprint. Observed vulnerabilities in the project center on the library's core filtering and policy-enforcement mechanisms; current severity and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libseccomp Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-9893CRITICAL libseccomp before 2.4.0 did not correctly generate 64-bit syscall argument comparisons using the arithmetic operators (LT, GT, LE, GE), which might able to lead to bypassing seccom | Mar 21, 2019 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libseccomp Project.
Media articles that mention a CVE ID that affects a product developed by Libseccomp Project — matched by CVE ID, not by vendor name.