CVE-2020-16121
published 2020-11-07CVE-2020-16121: PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be…
PriorityP49low3.3CVSS 3.1
AVLACLPRLUINSUCLINAN
EPSS
0.47%
38.1th percentile
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | packagekit | < packagekit 1.2.1-1 (bookworm) | packagekit 1.2.1-1 (bookworm) |
| packagekit | packagekit | >= 0 < 1.2.1-1 | 1.2.1-1 |
| packagekit | packagekit | >= 0 < 1.2.1-1 | 1.2.1-1 |
| packagekit | packagekit | >= 0 < 1.2.1-1 | 1.2.1-1 |
| packagekit | packagekit | >= 0 < 1.2.1-1 | 1.2.1-1 |
| packagekit | packagekit | >= 0 < 0.8.17-4ubuntu6~gcc5.4ubuntu1.5 | 0.8.17-4ubuntu6~gcc5.4ubuntu1.5 |
| packagekit | packagekit | >= 0 < 1.1.9-1ubuntu2.18.04.6 | 1.1.9-1ubuntu2.18.04.6 |
| packagekit | packagekit | >= 0 < 1.1.13-2ubuntu1.1 | 1.1.13-2ubuntu1.1 |
| packagekit | packagekit | >= 0.8.17-4ubuntu6 < 0.8.17-4ubuntu6~gcc5.4ubuntu1.5 | 0.8.17-4ubuntu6~gcc5.4ubuntu1.5 |
| packagekit | packagekit | >= 1.1.13-2ubuntu < 1.1.13-2ubuntu1.1 | 1.1.13-2ubuntu1.1 |
| packagekit | packagekit | >= 1.1.9-1ubuntu2 < 1.1.9-1ubuntu2.18.04.6 | 1.1.9-1ubuntu2.18.04.6 |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
vendor_ubuntu3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
PackageKit vulnerabilities
vendor_ubuntu·2020-09-24·CVSS 3.3
CVE-2020-16121 [LOW] PackageKit vulnerabilities
Title: PackageKit vulnerabilities
Summary: Several security issues were fixed in PackageKit.
Vaisha Bernard discovered that PackageKit incorrectly handled certain
methods. A local attacker could use this issue to learn the MIME type of
any file on the system. (CVE-2020-16121)
Sami Niemimäki discovered that PackageKit incorrectly handled local deb
packages. A local user could possibly use this issue to install untrusted
packages, contrary to expectations. (CVE-2020-16122)
Instructions: After a standard system update you need to reboot your computer to make all
the necessary changes.
Red Hat
PackageKit: local attacker could use this issue to learn the MIME type of any file on the system
vendor_redhat·2020-09-24·CVSS 3.3
CVE-2020-16121 [LOW] CWE-200 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system
PackageKit: local attacker could use this issue to learn the MIME type of any file on the system
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
Package: PackageKit (Red Hat Enterprise Linux 6) - Out of support scope
Package: PackageKit (Red Hat Enterprise Linux 7) - Out of support scope
Package: PackageKit (Red Hat Enterprise Linux 8) - Fix deferred
Debian
CVE-2020-16121: packagekit - PackageKit provided detailed error messages to unprivileged callers that exposed...
vendor_debian·2020·CVSS 3.3
CVE-2020-16121 [LOW] CVE-2020-16121: packagekit - PackageKit provided detailed error messages to unprivileged callers that exposed...
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
Scope: local
bookworm: resolved (fixed in 1.2.1-1)
bullseye: resolved (fixed in 1.2.1-1)
forky: resolved (fixed in 1.2.1-1)
sid: resolved (fixed in 1.2.1-1)
trixie: resolved (fixed in 1.2.1-1)
GHSA
GHSA-6g23-6jw5-9vrf: PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user w
ghsa_unreviewed·2022-05-24
CVE-2020-16121 [LOW] CWE-209 GHSA-6g23-6jw5-9vrf: PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user w
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
OSV
CVE-2020-16121: PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user w
osv·2020-11-07·CVSS 3.3
CVE-2020-16121 [LOW] CVE-2020-16121: PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user w
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
OSV
packagekit vulnerabilities
osv·2020-09-24·CVSS 3.3
CVE-2020-16121 [LOW] packagekit vulnerabilities
packagekit vulnerabilities
Vaisha Bernard discovered that PackageKit incorrectly handled certain
methods. A local attacker could use this issue to learn the MIME type of
any file on the system. (CVE-2020-16121)
Sami Niemimäki discovered that PackageKit incorrectly handled local deb
packages. A local user could possibly use this issue to install untrusted
packages, contrary to expectations. (CVE-2020-16122)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-16121 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system [fedora-all]
bugzilla·2020-10-02·CVSS 3.3
CVE-2020-16121 [LOW] CVE-2020-16121 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system [fedora-all]
CVE-2020-16121 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE:
Bugzilla
CVE-2020-16121 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system
bugzilla·2020-10-02·CVSS 3.3
CVE-2020-16121 [LOW] CVE-2020-16121 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system
CVE-2020-16121 PackageKit: local attacker could use this issue to learn the MIME type of any file on the system
PackageKit incorrectly handled certain
methods. A local attacker could use this issue to learn the MIME type of
any file on the system.
Reference:
https://packetstormsecurity.com/files/159284/USN-4538-1.txt
Discussion:
Created PackageKit tracking bugs for this issue:
Affects: fedora-all [bug 1884561]
---
External References:
More details:
https://bugs.launchpad.net/ubuntu/%2Bsource/packagekit/%2Bbug/1888887
https://people.canonical.com/~ubuntu-security/cve/2020/CVE-2020-16121.html?_ga=2.191526435.887932068.1602011173-1206535791.1586737989
---
Patch: https://launchpadlibrarian.net/498537855/0002-Information-disclosure-in-InstallFiles-GetFilesLocal.patch
2020-11-07
Published