GHSA-wpmr-q825-x4c6

Suggest an improvement
Source
https://github.com/advisories/GHSA-wpmr-q825-x4c6
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-wpmr-q825-x4c6/GHSA-wpmr-q825-x4c6.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-wpmr-q825-x4c6
Aliases
  • CVE-2020-15703
Published
2022-05-24T17:32:47Z
Modified
2024-02-16T07:56:54.523403Z
Severity
  • 4.0 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N CVSS Calculator
Summary
aptdaemon Information Disclosure via Improper Input Validation in Transaction class
Details

There is no input validation on the Locale property in an apt transaction. An unprivileged user can supply a full path to a writable directory, which lets aptd read a file as root. Having a symlink in place results in an error message if the file exists, and no error otherwise. This way an unprivileged user can check for the existence of any files on the system as root.

Database specific
{
    "nvd_published_at": "2020-10-31T04:15:00Z",
    "cwe_ids": [
        "CWE-200"
    ],
    "github_reviewed": true,
    "github_reviewed_at": "2023-08-07T19:59:14Z",
    "severity": "MODERATE"
}
References

Affected packages

PyPI / aptdaemon

Package

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.1.1

Affected versions

Other
trunk
0.*
0.3X
0.40
1.*
1.0
1.1

Database specific

source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-wpmr-q825-x4c6/GHSA-wpmr-q825-x4c6.json"