Lxc

Vendor:

First CVE: Feb 14, 2014 · Active for 12 years

12
Total CVEs
More Total CVEs than 90% of tracked products
1.5
Avg CVEs / Year
Higher CVE frequency than 56% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 25% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Lxc over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 14, 2014
12 years ago
Most Recent CVE
May 5, 2026
80 days ago

CVE Severity & Scoring

Lxc12 CVEs
All CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local5 (41.7%)
Network3 (25.0%)
Unknown4 (33.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (58.3%)
High1 (8.3%)
Unknown4 (33.3%)
User Interaction
None7 (58.3%)
Unknown4 (33.3%)
Required1 (8.3%)
Privileges Required
Low4 (33.3%)
High1 (8.3%)
None3 (25.0%)
Unknown4 (33.3%)

Top CVEs

Signals from CVEs in this product scope (12 CVEs).

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveragi
Feb 11, 20198.691NOYES
An issue was discovered in Linux Containers (LXC) before 2016-02-22. When executing a program via lxc-attach, the nonpriv session can escape to the parent session by using the TIOC
Jan 9, 20178.628NONO
lxc is a Linux container runtime. In the setuid helper lxc-user-nic, the delete path contains a logic flaw in the find_line() function that allows an unprivileged user to delete OV
May 5, 20266.527NONO
In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap containers.
Feb 10, 20208.125NONO
lxc-attach in LXC before 1.0.9 and 2.x before 2.0.6 allows an attacker inside of an unprivileged container to use an inherited file descriptor, of the host's /proc, to access the r
May 1, 20179.123NONO
The lxc-sshd template (templates/lxc-sshd.in) in LXC before 1.0.0.beta2 uses read-write permissions when mounting /sbin/init, which allows local users to gain privileges by modifyi
Feb 14, 20147.221NONO
lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink attack on a (1) mount target or (2) bind mou
Oct 1, 20157.218NONO
lxc-user-nic in lxc through 5.0.1 is installed setuid root, and may allow local users to infer whether any file exists, even within a protected directory tree, because "Failed to o
Jan 1, 20233.317NONO
lxc-user-nic when asked to delete a network interface will unconditionally open a user provided path. This code path may be used by an unprivileged user to check for the existence
Aug 10, 20183.317NONO
lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveragi
Mar 14, 20173.317NONO

Exploit Exposure

Signals from CVEs in this product scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
8.3% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
8.3% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (12 CVEs).

Media Mentions

Signals from CVEs in this product scope (12 CVEs).

Top CNAs Publishing CVEs For Lxc

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2.0.018.11.4%00
1.1.317.20.5%00
1.1.217.20.5%00
1.1.117.20.5%00
1.1.017.20.5%00
0.8.017.20.5%00
0.7.517.20.5%00
0.7.4.217.20.5%00
0.7.4.117.20.5%00
0.7.417.20.5%00
0.7.317.20.5%00
0.7.217.20.5%00
0.7.117.20.5%00
0.7.017.20.5%00
0.6.517.20.5%00
0.6.417.20.5%00
0.6.317.20.5%00
0.6.217.20.5%00
0.6.117.20.5%00
0.6.017.20.5%00