lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-1331