CVE-2021-25682
published 2021-06-11CVE-2021-25682: It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel.
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.45%
36.4th percentile
It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apport_project | apport | >= 0 < 2.20.1-0ubuntu2.30 | 2.20.1-0ubuntu2.30 |
| apport_project | apport | >= 0 < 2.20.9-0ubuntu7.23 | 2.20.9-0ubuntu7.23 |
| apport_project | apport | >= 0 < 2.20.11-0ubuntu27.16 | 2.20.11-0ubuntu27.16 |
| apport_project | apport | >= 0 < 2.14.1-0ubuntu3.29+esm6 | 2.14.1-0ubuntu3.29+esm6 |
| canonical | apport | >= 2.20.1 < 2.20.1-0ubuntu2.30 | 2.20.1-0ubuntu2.30 |
| canonical | apport | >= 2.20.1-0ubuntu1 < 2.20.1-0ubuntu2.30 | 2.20.1-0ubuntu2.30 |
| canonical | apport | >= 2.20.11-0ubuntu27 < 2.20.11-0ubuntu27.16 | 2.20.11-0ubuntu27.16 |
| canonical | apport | >= 2.20.11-0ubuntu50 < 2.20.11-0ubuntu50.5 | 2.20.11-0ubuntu50.5 |
| canonical | apport | >= 2.20.9 < 2.20.9-0ubuntu7.23 | 2.20.9-0ubuntu7.23 |
| canonical | apport | >= 2.20.9-0ubuntu1 < 2.20.9-0ubuntu7.23 | 2.20.9-0ubuntu7.23 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_ubuntu8.8HIGH
vendor_cisco3.1
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7398-g2qh-pr9p: It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel
ghsa_unreviewed·2022-05-24
CVE-2021-25682 [HIGH] CWE-20 GHSA-7398-g2qh-pr9p: It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel
It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel.
OSV
apport vulnerabilities
osv·2021-02-03·CVSS 7.8
CVE-2021-25682 [HIGH] apport vulnerabilities
apport vulnerabilities
USN-4720-1 fixed several vulnerabilities in Apport. This update provides
the corresponding update for Ubuntu 14.04 ESM.
Original advisory details:
Itai Greenhut discovered that Apport incorrectly parsed certain files in
the /proc filesystem. A local attacker could use this issue to escalate
privileges and run arbitrary code. (CVE-2021-25682, CVE-2021-25683)
Itai Greenhut discovered that Apport incorrectly handled opening certain
special files. A local attacker could possibly use this issue to cause
Apport to hang, resulting in a denial of service. (CVE-2021-25684)
OSV
CVE-2021-25682: It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel
osv·2021-02-02·CVSS 7.8
CVE-2021-25682 [HIGH] CVE-2021-25682: It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel
It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel.
OSV
apport vulnerabilities
osv·2021-02-02·CVSS 7.8
CVE-2021-25682 [HIGH] apport vulnerabilities
apport vulnerabilities
Itai Greenhut discovered that Apport incorrectly parsed certain files in
the /proc filesystem. A local attacker could use this issue to escalate
privileges and run arbitrary code. (CVE-2021-25682, CVE-2021-25683)
Itai Greenhut discovered that Apport incorrectly handled opening certain
special files. A local attacker could possibly use this issue to cause
Apport to hang, resulting in a denial of service. (CVE-2021-25684)
Ubuntu
Apport vulnerabilities
vendor_ubuntu·2021-02-03·CVSS 8.8
CVE-2021-25684 [HIGH] Apport vulnerabilities
Title: Apport vulnerabilities
Summary: Several security issues were fixed in Apport.
USN-4720-1 fixed several vulnerabilities in Apport. This update provides
the corresponding update for Ubuntu 14.04 ESM.
Original advisory details:
Itai Greenhut discovered that Apport incorrectly parsed certain files in
the /proc filesystem. A local attacker could use this issue to escalate
privileges and run arbitrary code. (CVE-2021-25682, CVE-2021-25683)
Itai Greenhut discovered that Apport incorrectly handled opening certain
special files. A local attacker could possibly use this issue to cause
Apport to hang, resulting in a denial of service. (CVE-2021-25684)
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Apport vulnerabilities
vendor_ubuntu·2021-02-02·CVSS 8.8
CVE-2021-25683 [HIGH] Apport vulnerabilities
Title: Apport vulnerabilities
Summary: Several security issues were fixed in Apport.
Itai Greenhut discovered that Apport incorrectly parsed certain files in
the /proc filesystem. A local attacker could use this issue to escalate
privileges and run arbitrary code. (CVE-2021-25682, CVE-2021-25683)
Itai Greenhut discovered that Apport incorrectly handled opening certain
special files. A local attacker could possibly use this issue to cause
Apport to hang, resulting in a denial of service. (CVE-2021-25684)
Instructions: In general, a standard system update will make all the necessary changes.
Cisco
Multiple Vulnerabilities in dnsmasq DNS Forwarder Affecting Cisco Products: January 2021
vendor_cisco·CVSS 3.1
CVE-2020-25682 Multiple Vulnerabilities in dnsmasq DNS Forwarder Affecting Cisco Products: January 2021
CVE-2020-25682: Multiple Vulnerabilities in dnsmasq DNS Forwarder Affecting Cisco Products: January 2021
A set of previously unknown vulnerabilities in the DNS forwarder implementation of dnsmasq were disclosed on January 19, 2021. The vulnerabilities are collectively known as DNSpooq . Exploitation of these vulnerabilities could result in remote code execution or denial of service (DoS), or may allow an attacker to more easily forge DNS answers that can poison DNS caches, depending on the specific vulnerability. Multiple Cisco products are affected by these vulnerabilities. Cisco will release software updates that address these vulnerabilities. Any
CVSS: 3.1
CWE: CWE-340, CWE-340
Bug IDs: CSCvv83232, CSCvw00918, CSCvx17339, CSCvv83232, CSCvw00918
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-06-11
Published