VDB
DEBIAN-CVE-2015-2925
DEBIAN-CVE-2015-2925
PUBLISHED
The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a "double-chroot attack."
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:12 | linux | 0, 0, 0 |
| Debian:14 | linux | 0, 0, 0 |
| Debian:13 | linux | 0, 0, 0 |
| Debian:11 | linux | 0, 0, 0 |
Exploit Intelligence
- Docker + CVE-2015-2925 = escaping from --volume (github-poc-repo)
Timeline
- Nov 16, 2015 CVE Published
- Apr 28, 2026 CVE Updated