cbcvebase.
CVE-2020-27348
published 2020-12-04

CVE-2020-27348: In some conditions, a snap package built by snapcraft includes the current directory in LD_LIBRARY_PATH, allowing a malicious snap to gain code execution…

PriorityP431medium6.8CVSS 3.1
AVLACLPRLUIRSUCHIHAL
EPSS
0.67%
48.6th percentile
In some conditions, a snap package built by snapcraft includes the current directory in LD_LIBRARY_PATH, allowing a malicious snap to gain code execution within the context of another snap if both plug the home interface or similar. This issue affects snapcraft versions prior to 4.4.4, prior to 2.43.1+16.04.1, and prior to 2.43.1+18.04.1.

Affected

7 ranges
VendorProductVersion rangeFixed in
canonicalsnapcraft< 4.4.44.4.4
canonicalsnapcraft>= 0 < 2.43.12.43.1
canonicalsnapcraft>= 0 < 4.4.44.4.4
canonicalsnapcraft>= 2.43.1 < 2.43.1+16.04.12.43.1+16.04.1
canonicalsnapcraft>= 4.4 < 4.4.44.4.4
canonicalubuntu_linux
canonicalubuntu_linux

CVSS provenance

nvdv3.16.8MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.