cbcvebase.
CVE-2022-1242
published 2024-06-03

CVE-2022-1242: Apport can be tricked into connecting to arbitrary sockets as the root user

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Apport can be tricked into connecting to arbitrary sockets as the root user

Affected

11 ranges
VendorProductVersion rangeFixed in
apport_projectapport>= 0 < 2.20.9-0ubuntu7.282.20.9-0ubuntu7.28
apport_projectapport>= 0 < 2.20.11-0ubuntu27.242.20.11-0ubuntu27.24
apport_projectapport>= 0 < 2.20.11-0ubuntu82.12.20.11-0ubuntu82.1
apport_projectapport>= 0 < 2.20.1-0ubuntu2.30+esm42.20.1-0ubuntu2.30+esm4
canonicalapport< 2.21.02.21.0
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonical_ltdapport< 2.21.02.21.0
fortinetfortitester

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH