Description
A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system is specially configured to allow unprivileged users to run sudo apport-cli, less is configured as the pager, and the terminal size can be set: a local attacker can escalate privilege. It is extremely unlikely that a system administrator would configure sudo to allow unprivileged users to perform this class of exploit.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-23584 | A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system is specially configured to allow unprivileged users to run sudo apport-cli, less is configured as the pager, and the terminal size can be set: a local attacker can escalate privilege. It is extremely unlikely that a system administrator would configure sudo to allow unprivileged users to perform this class of exploit. |
Ubuntu USN |
USN-6018-1 | Apport vulnerability |
References
History
Fri, 07 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: canonical
Published:
Updated: 2025-02-07T15:54:48.365Z
Reserved: 2023-03-10T16:17:04.430Z
Link: CVE-2023-1326
Updated: 2024-08-02T05:40:59.987Z
Status : Modified
Published: 2023-04-13T23:15:07.180
Modified: 2024-11-21T07:38:55.740
Link: CVE-2023-1326
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN