Описание
A race condition existed in the snapd 2.54.2 snap-confine binary when preparing a private mount namespace for a snap. This could allow a local attacker to gain root privileges by bind-mounting their own contents inside the snap's private mount namespace and causing snap-confine to execute arbitrary code and hence gain privilege escalation. Fixed in snapd versions 2.54.3+18.04, 2.54.3+20.04 and 2.54.3+21.10.1
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 2.54.3+18.04 |
devel | released | 2.54.3+22.04.1 |
esm-infra-legacy/trusty | DNE | trusty/esm was released [2.54.3+14.04~esm1] |
esm-infra/bionic | released | 2.54.3+18.04 |
esm-infra/focal | released | 2.54.3+20.04 |
esm-infra/xenial | released | 2.54.3+16.04~esm2 |
focal | released | 2.54.3+20.04 |
hirsute | ignored | end of life |
impish | released | 2.54.3+21.10.1 |
snap | released | 2.54.3 |
Показывать по
Ссылки на источники
6.9 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
A race condition existed in the snapd 2.54.2 snap-confine binary when preparing a private mount namespace for a snap. This could allow a local attacker to gain root privileges by bind-mounting their own contents inside the snap's private mount namespace and causing snap-confine to execute arbitrary code and hence gain privilege escalation. Fixed in snapd versions 2.54.3+18.04, 2.54.3+20.04 and 2.54.3+21.10.1
A race condition existed in the snapd 2.54.2 snap-confine binary when ...
A race condition existed in the snapd 2.54.2 snap-confine binary when preparing a private mount namespace for a snap. This could allow a local attacker to gain root privileges by bind-mounting their own contents inside the snap's private mount namespace and causing snap-confine to execute arbitrary code and hence gain privilege escalation. Fixed in snapd versions 2.54.3+18.04, 2.54.3+20.04 and 2.54.3+21.10.1
Уязвимость утилиты для управления самодостаточными пакетами snapd, связанная с ошибками выполнения многопоточных задач, позволяющая нарушителю выполнить произвольный код с привилегиями root
6.9 Medium
CVSS2
7.8 High
CVSS3