18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers

Summary

A use-after-free vulnerability in Linux's SCTP networking code, present since 2008, has been identified. Researchers demonstrated that this flaw can be exploited by local users to gain root privileges on the host system and escape containerized environments.

IFF Assessment

FOE

This vulnerability allows local users to gain full root privileges and escape containers, posing a significant threat to system security.

Severity

9.0 Critical (AI Estimated)

The CVSS score is estimated as high due to the potential for local privilege escalation to root and container escape, which have a significant impact on confidentiality, integrity, and availability. The attack vector is local, but the exploitability is high given the nature of the bug.

Defender Context

This vulnerability highlights the ongoing risk posed by long-standing flaws in foundational operating system components like the Linux kernel. Defenders should prioritize patching affected Linux systems, especially those running older kernel versions, and ensure robust container security practices to mitigate the risk of privilege escalation and escape.

Read Full Story →