Loading
Generated remediation guidance and an executive summary. No account required.
When executing a program via the bubblewrap sandbox, the nonpriv session can escape to the parent session by using the TIOCSTI ioctl to push characters into the terminal's input buffer, allowing an attacker to escape the sandbox.
Use CWE-20, Projectatomic vendor hub and Bubblewrap product page to widen CVE-2017-5226 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2019-12439 and CVE-2020-5291 for nearby disclosures in the same product family.