CVE-2022-3328
published 2024-01-08CVE-2022-3328: Race condition in snap-confine's must_mkdir_and_open_with_perms()
PriorityP430high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.38%
30.6th percentile
Race condition in snap-confine's must_mkdir_and_open_with_perms()
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | snapd | < 2.61.1 | 2.61.1 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical_ltd | snapd | < 2.61.1 | 2.61.1 |
| debian | snapd | < snapd 2.57.6-1 (bookworm) | snapd 2.57.6-1 (bookworm) |
| github.com | snapcore_snapd | >= 0 < 2.57.6 | 2.57.6 |
| snapcraft | snapd | >= 0 < 2.49-1+deb11u2 | 2.49-1+deb11u2 |
| snapcraft | snapd | >= 0 < 2.57.6-1 | 2.57.6-1 |
| snapcraft | snapd | >= 0 < 2.57.6-1 | 2.57.6-1 |
| snapcraft | snapd | >= 0 < 2.57.6-1 | 2.57.6-1 |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.0HIGH
vendor_debian7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
snapd vulnerability
vendor_ubuntu·2022-12-01
CVE-2022-3328 snapd vulnerability
Title: snapd vulnerability
Summary: snapd could be made to run programs as an administrator.
The Qualys Research Team discovered that a race condition existed in the
snapd snap-confine binary when preparing the private /tmp mount for a
snap. A local attacker could possibly use this issue to escalate privileges
and execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2022-3328: snapd - Race condition in snap-confine's must_mkdir_and_open_with_perms()
vendor_debian·2022·CVSS 7.8
CVE-2022-3328 [HIGH] CVE-2022-3328: snapd - Race condition in snap-confine's must_mkdir_and_open_with_perms()
Race condition in snap-confine's must_mkdir_and_open_with_perms()
Scope: local
bookworm: resolved (fixed in 2.57.6-1)
bullseye: resolved (fixed in 2.49-1+deb11u2)
forky: resolved (fixed in 2.57.6-1)
sid: resolved (fixed in 2.57.6-1)
trixie: resolved (fixed in 2.57.6-1)
OSV
snapd Race Condition vulnerability in github.com/snapcore/snapd
osv·2024-06-05
CVE-2022-3328 snapd Race Condition vulnerability in github.com/snapcore/snapd
snapd Race Condition vulnerability in github.com/snapcore/snapd
snapd Race Condition vulnerability in github.com/snapcore/snapd.
NOTE: The source advisory for this report contains additional versions that could not be automatically mapped to standard Go module versions.
(If this is causing false-positive reports from vulnerability scanners, please suggest an edit to the report.)
The additional affected modules and versions are: github.com/snapcore/snapd before v2.57.6.
GHSA
snapd Race Condition vulnerability
ghsa·2024-01-08
CVE-2022-3328 [CRITICAL] CWE-362 snapd Race Condition vulnerability
snapd Race Condition vulnerability
Race condition in snap-confine's `must_mkdir_and_open_with_perms()`
OSV
snapd Race Condition vulnerability
osv·2024-01-08
CVE-2022-3328 [CRITICAL] snapd Race Condition vulnerability
snapd Race Condition vulnerability
Race condition in snap-confine's `must_mkdir_and_open_with_perms()`
OSV
CVE-2022-3328: Race condition in snap-confine's must_mkdir_and_open_with_perms()
osv·2024-01-08·CVSS 7.0
CVE-2022-3328 [HIGH] CVE-2022-3328: Race condition in snap-confine's must_mkdir_and_open_with_perms()
Race condition in snap-confine's must_mkdir_and_open_with_perms()
No detection rules found.
No public exploits indexed.
Qualys
Snapd Race Condition Vulnerability in snap-confine’s must_mkdir_and_open_with_perms() (CVE-2022-3328) | Qualys
blogs_qualys·2022-11-30·CVSS 7.8
CVE-2022-3328 [HIGH] Snapd Race Condition Vulnerability in snap-confine’s must_mkdir_and_open_with_perms() (CVE-2022-3328) | Qualys
#### Table of Contents
- What is snap-confine?
- Potential Impact
- The technical details of snap-confine vulnerability can be found at:
- Disclosure Timeline
- Qualys QID Coverage
- Discover Vulnerable Linux Servers Using Qualys Cloud Platform
- Vendor References
- Frequently Asked Questions (FAQs)
The Qualys Threat Research Unit (TRU) has discovered a new vulnerability in snap-confine function on Linux operating systems, a SUID-root program installed by default on Ubuntu. Qualys recommends that security teams apply the patch for this vulnerability as soon as possible.
In February 2022, Qualys Threat Research Unit (TRU) published CVE-2021-44731 in our “Lemmings” advisory. The vulnerability (CVE-2022-3328) was introduced in February 2022 by the patch for CVE-2021-44731)
The Qualys Thre
Qualys
Snapd Race Condition Vulnerability in snap-confine’s must_mkdir_and_open_with_perms() (CVE-2022-3328)
blogs_qualys·2022-11-30·CVSS 7.8
[HIGH] Snapd Race Condition Vulnerability in snap-confine’s must_mkdir_and_open_with_perms() (CVE-2022-3328)
## Table of Contents
What is snap-confine?
Potential Impact
The technical details of snap-confine vulnerability can be found at:
Disclosure Timeline
Qualys QID Coverage
Discover Vulnerable Linux Servers Using Qualys Cloud Platform
Vendor References
Frequently Asked Questions (FAQs)
The Qualys Threat Research Unit (TRU) has discovered a new vulnerability in snap-confine function on Linux operating systems, a SUID-root program installed by default on Ubuntu. Qualys recommends that security teams apply the patch for this vulnerability as soon as possible.
In February 2022, Qualys Threat Research Unit (TRU) published CVE-2021-44731 in our “Lemmings” advisory. The vulnerability (CVE-2022-3328) was introduced in February 2022 by the patch for CVE-2021-44731)
The Qualys Threat Research
2024-01-08
Published