CVE-2024-6388

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-6388
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-6388.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-6388
Related
Published
2024-06-27T16:15:12Z
Modified
2025-01-14T12:18:44.033488Z
Summary
[none]
Details

Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.

References

Affected packages

Git / github.com/canonical/ubuntu-advantage-desktop-daemon

Affected ranges

Type
GIT
Repo
https://github.com/canonical/ubuntu-advantage-desktop-daemon
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

1.*

1.0
1.1
1.10
1.11
1.2
1.3
1.4
1.5
1.6
1.7
1.8
1.9