USN-5753-1

Source
https://ubuntu.com/security/notices/USN-5753-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/USN-5753-1.json
Related
Published
2022-12-01T01:08:10.331102Z
Modified
2022-12-01T01:08:10.331102Z
Summary
snapd vulnerability
Details

The Qualys Research Team discovered that a race condition existed in the snapd snap-confine binary when preparing the private /tmp mount for a snap. A local attacker could possibly use this issue to escalate privileges and execute arbitrary code.

References

Affected packages

Ubuntu:22.04:LTS / snapd

Package

Name
snapd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
2.57.5+22.04ubuntu0.1

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "snap-confine": "2.57.5+22.04ubuntu0.1",
            "ubuntu-snappy": "2.57.5+22.04ubuntu0.1",
            "snapd-xdg-open": "2.57.5+22.04ubuntu0.1",
            "snapd": "2.57.5+22.04ubuntu0.1",
            "ubuntu-core-launcher": "2.57.5+22.04ubuntu0.1",
            "ubuntu-core-snapd-units": "2.57.5+22.04ubuntu0.1",
            "golang-github-snapcore-snapd-dev": "2.57.5+22.04ubuntu0.1",
            "ubuntu-snappy-cli": "2.57.5+22.04ubuntu0.1",
            "golang-github-ubuntu-core-snappy-dev": "2.57.5+22.04ubuntu0.1"
        }
    ]
}

Ubuntu:18.04:LTS / snapd

Package

Name
snapd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
2.57.5+18.04ubuntu0.1

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "snap-confine": "2.57.5+18.04ubuntu0.1",
            "ubuntu-snappy": "2.57.5+18.04ubuntu0.1",
            "snapd-xdg-open": "2.57.5+18.04ubuntu0.1",
            "snapd": "2.57.5+18.04ubuntu0.1",
            "ubuntu-core-launcher": "2.57.5+18.04ubuntu0.1",
            "ubuntu-core-snapd-units": "2.57.5+18.04ubuntu0.1",
            "golang-github-snapcore-snapd-dev": "2.57.5+18.04ubuntu0.1",
            "ubuntu-snappy-cli": "2.57.5+18.04ubuntu0.1",
            "golang-github-ubuntu-core-snappy-dev": "2.57.5+18.04ubuntu0.1"
        }
    ]
}

Ubuntu:20.04:LTS / snapd

Package

Name
snapd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
2.57.5+20.04ubuntu0.1

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "snap-confine": "2.57.5+20.04ubuntu0.1",
            "ubuntu-snappy": "2.57.5+20.04ubuntu0.1",
            "snapd-xdg-open": "2.57.5+20.04ubuntu0.1",
            "snapd": "2.57.5+20.04ubuntu0.1",
            "ubuntu-core-launcher": "2.57.5+20.04ubuntu0.1",
            "ubuntu-core-snapd-units": "2.57.5+20.04ubuntu0.1",
            "golang-github-snapcore-snapd-dev": "2.57.5+20.04ubuntu0.1",
            "ubuntu-snappy-cli": "2.57.5+20.04ubuntu0.1",
            "golang-github-ubuntu-core-snappy-dev": "2.57.5+20.04ubuntu0.1"
        }
    ]
}

Ubuntu:Pro:16.04:LTS / snapd

Package

Name
snapd

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
2.54.3+16.04.0ubuntu0.1~esm5

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries": [
        {
            "snap-confine": "2.54.3+16.04.0ubuntu0.1~esm5",
            "ubuntu-snappy": "2.54.3+16.04.0ubuntu0.1~esm5",
            "snapd-xdg-open": "2.54.3+16.04.0ubuntu0.1~esm5",
            "snapd": "2.54.3+16.04.0ubuntu0.1~esm5",
            "ubuntu-core-launcher": "2.54.3+16.04.0ubuntu0.1~esm5",
            "ubuntu-core-snapd-units": "2.54.3+16.04.0ubuntu0.1~esm5",
            "golang-github-snapcore-snapd-dev": "2.54.3+16.04.0ubuntu0.1~esm5",
            "ubuntu-snappy-cli": "2.54.3+16.04.0ubuntu0.1~esm5",
            "golang-github-ubuntu-core-snappy-dev": "2.54.3+16.04.0ubuntu0.1~esm5"
        }
    ]
}