CVE-2020-27348
Summary
| CVE | CVE-2020-27348 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-12-04 03:15:00 UTC |
| Updated | 2020-12-14 20:36:00 UTC |
| Description | In some conditions, a snap package built by snapcraft includes the current directory in LD_LIBRARY_PATH, allowing a malicious snap to gain code execution within the context of another snap if both plug the home interface or similar. This issue affects snapcraft versions prior to 4.4.4, prior to 2.43.1+16.04.1, and prior to 2.43.1+18.04.1. |
Risk And Classification
Problem Types: CWE-427
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Canonical | Snapcraft | All | All | All | All |
| Application | Canonical | Snapcraft | All | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 16.04 | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 18.04 | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 16.04 | All | All | All |
| Operating System | Canonical | Ubuntu Linux | 18.04 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| USN-4661-1: Snapcraft vulnerability | Ubuntu security notices | Ubuntu | MISC | usn.ubuntu.com | Patch, Third Party Advisory |
| Bug #1901572 “snapd vulnerable to Library Injection from CWD” : Bugs : Snapcraft | MISC | bugs.launchpad.net | Exploit, Issue Tracking, Third Party Advisory |
| project_loader, formatting_utils: take empty env values into account by sergiusens · Pull Request #3345 · snapcore/snapcraft · GitHub | MISC | github.com | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
Discovery Credit
LEGACY: itszn
There are currently no legacy QID mappings associated with this CVE.