UBUNTU-CVE-2015-7946

Source
https://ubuntu.com/security/CVE-2015-7946
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2015/UBUNTU-CVE-2015-7946.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2015-7946
Upstream
  • CVE-2015-7946
Withdrawn
2025-07-18T16:43:17Z
Published
2020-05-07T23:15:00Z
Modified
2025-07-16T07:17:37.751644Z
Severity
  • 4.6 (Medium) CVSS_V3 - CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
  • 7.3 (High) CVSS_V3 - CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1.

References

Affected packages

Ubuntu:16.04:LTS / unity8

Package

Name
unity8
Purl
pkg:deb/ubuntu/unity8@8.11+16.04.20160111.1-0ubuntu1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
8.11+16.04.20160111.1-0ubuntu1

Affected versions

8.*
8.11+15.10.20150930.1-0ubuntu1
8.11+15.10.20151021-0ubuntu1
8.11+16.04.20151104-0ubuntu1
8.11+16.04.20151112.1-0ubuntu1
8.11+16.04.20151126-0ubuntu1
8.11+16.04.20151126-0ubuntu2
8.11+16.04.20151208.1-0ubuntu1
8.11+16.04.20160105.1-0ubuntu1
8.11+16.04.20160107-0ubuntu1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "indicators-client"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "indicators-client-dbgsym"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity-scope-tool"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity-scope-tool-dbgsym"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-autopilot"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-common"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-dbgsym"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-doc"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-fake-env"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-fake-env-dbgsym"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-private"
        },
        {
            "binary_version": "8.11+16.04.20160111.1-0ubuntu1",
            "binary_name": "unity8-private-dbgsym"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2015/UBUNTU-CVE-2015-7946.json"