Vulnerability Details CVE-2019-12589
In Firejail before 0.9.60, seccomp filters are writable inside the jail, leading to a lack of intended seccomp restrictions for a process that is joined to the jail after a filter has been modified by an attacker.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.4%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 4.6
Products affected by CVE-2019-12589
-
cpe:2.3:a:firejail_project:firejail:0.9
-
cpe:2.3:a:firejail_project:firejail:0.9.10
-
cpe:2.3:a:firejail_project:firejail:0.9.12
-
cpe:2.3:a:firejail_project:firejail:0.9.12.1
-
cpe:2.3:a:firejail_project:firejail:0.9.12.2
-
cpe:2.3:a:firejail_project:firejail:0.9.14
-
cpe:2.3:a:firejail_project:firejail:0.9.16
-
cpe:2.3:a:firejail_project:firejail:0.9.2
-
cpe:2.3:a:firejail_project:firejail:0.9.20
-
cpe:2.3:a:firejail_project:firejail:0.9.22
-
cpe:2.3:a:firejail_project:firejail:0.9.24
-
cpe:2.3:a:firejail_project:firejail:0.9.26
-
cpe:2.3:a:firejail_project:firejail:0.9.28
-
cpe:2.3:a:firejail_project:firejail:0.9.30
-
cpe:2.3:a:firejail_project:firejail:0.9.32
-
cpe:2.3:a:firejail_project:firejail:0.9.34
-
cpe:2.3:a:firejail_project:firejail:0.9.36
-
cpe:2.3:a:firejail_project:firejail:0.9.38
-
cpe:2.3:a:firejail_project:firejail:0.9.38.10
-
cpe:2.3:a:firejail_project:firejail:0.9.38.12
-
cpe:2.3:a:firejail_project:firejail:0.9.38.2
-
cpe:2.3:a:firejail_project:firejail:0.9.38.4
-
cpe:2.3:a:firejail_project:firejail:0.9.38.6
-
cpe:2.3:a:firejail_project:firejail:0.9.38.8
-
cpe:2.3:a:firejail_project:firejail:0.9.4
-
cpe:2.3:a:firejail_project:firejail:0.9.40
-
cpe:2.3:a:firejail_project:firejail:0.9.42
-
cpe:2.3:a:firejail_project:firejail:0.9.44
-
cpe:2.3:a:firejail_project:firejail:0.9.44.10
-
cpe:2.3:a:firejail_project:firejail:0.9.44.2
-
cpe:2.3:a:firejail_project:firejail:0.9.44.4
-
cpe:2.3:a:firejail_project:firejail:0.9.44.6
-
cpe:2.3:a:firejail_project:firejail:0.9.44.8
-
cpe:2.3:a:firejail_project:firejail:0.9.46
-
cpe:2.3:a:firejail_project:firejail:0.9.48
-
cpe:2.3:a:firejail_project:firejail:0.9.50
-
cpe:2.3:a:firejail_project:firejail:0.9.52
-
cpe:2.3:a:firejail_project:firejail:0.9.54
-
cpe:2.3:a:firejail_project:firejail:0.9.56
-
cpe:2.3:a:firejail_project:firejail:0.9.58.2
-
cpe:2.3:a:firejail_project:firejail:0.9.6
-
cpe:2.3:a:firejail_project:firejail:0.9.8
-
cpe:2.3:a:firejail_project:firejail:0.9.8.1