Lxc
Vendor:
First CVE: Feb 14, 2014 · Active for 12 years
12
Total CVEs
More Total CVEs than 90% of tracked products
1.5
Avg CVEs / Year
Higher CVE frequency than 56% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 25% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Lxc over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 14, 2014
12 years ago
Most Recent CVE
May 5, 2026
80 days ago
CVE Severity & Scoring
Lxc12 CVEs
25%
25%
42%
8%
All CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local5 (41.7%)
Network3 (25.0%)
Unknown4 (33.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (58.3%)
High1 (8.3%)
Unknown4 (33.3%)
User Interaction
None7 (58.3%)
Unknown4 (33.3%)
Required1 (8.3%)
Privileges Required
Low4 (33.3%)
High1 (8.3%)
None3 (25.0%)
Unknown4 (33.3%)
Top CVEs
Signals from CVEs in this product scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-5736HIGH runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveragi | Feb 11, 2019 | 8.6 | 91 | NO | YES |
CVE-2016-10124HIGH An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOC | Jan 9, 2017 | 8.6 | 28 | NO | NO |
CVE-2026-39402MEDIUM lxc is a Linux container runtime. In the setuid helper lxc-user-nic, the delete path contains a logic flaw in the find_line() function that allows an unprivileged user to delete OV | May 5, 2026 | 6.5 | 27 | NO | NO |
CVE-2017-18641HIGH In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap containers. | Feb 10, 2020 | 8.1 | 25 | NO | NO |
CVE-2016-8649CRITICAL lxc-attach in LXC before 1.0.9 and 2.x before 2.0.6 allows an attacker inside of an unprivileged container to use an inherited file descriptor, of the host's /proc, to access the r | May 1, 2017 | 9.1 | 23 | NO | NO |
CVE-2013-6441HIGH The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifyi | Feb 14, 2014 | 7.2 | 21 | NO | NO |
CVE-2015-1335HIGH lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink attack on a (1) mount target or (2) bind mou | Oct 1, 2015 | 7.2 | 18 | NO | NO |
lxc-user-nic in lxc through 5.0.1 is installed setuid root, and may allow local users to infer whether any file exists, even within a protected directory tree, because "Failed to o | Jan 1, 2023 | 3.3 | 17 | NO | NO |
lxc-user-nic when asked to delete a network interface will unconditionally open a user provided path. This code path may be used by an unprivileged user to check for the existence | Aug 10, 2018 | 3.3 | 17 | NO | NO |
lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveragi | Mar 14, 2017 | 3.3 | 17 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (12 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
8.3% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
8.3% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (12 CVEs).
Media Mentions
Signals from CVEs in this product scope (12 CVEs).
Top CNAs Publishing CVEs For Lxc
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.0.0 | 1 | 8.1 | 1.4% | 0 | 0 |
| 1.1.3 | 1 | 7.2 | 0.5% | 0 | 0 |
| 1.1.2 | 1 | 7.2 | 0.5% | 0 | 0 |
| 1.1.1 | 1 | 7.2 | 0.5% | 0 | 0 |
| 1.1.0 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.8.0 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.5 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.4.2 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.4.1 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.4 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.3 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.2 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.1 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.7.0 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.6.5 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.6.4 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.6.3 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.6.2 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.6.1 | 1 | 7.2 | 0.5% | 0 | 0 |
| 0.6.0 | 1 | 7.2 | 0.5% | 0 | 0 |