Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.
Metrics
Affected Vendors & Products
References
History
Wed, 27 Aug 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Canonical
Canonical ubuntu Advantage Desktop Daemon |
|
Weaknesses | CWE-319 | |
CPEs | cpe:2.3:a:canonical:ubuntu_advantage_desktop_daemon:*:*:*:*:*:*:*:* | |
Vendors & Products |
Canonical
Canonical ubuntu Advantage Desktop Daemon |

Status: PUBLISHED
Assigner: canonical
Published:
Updated: 2024-08-01T21:41:03.306Z
Reserved: 2024-06-27T14:21:13.801Z
Link: CVE-2024-6388

Updated: 2024-08-01T21:41:03.306Z

Status : Analyzed
Published: 2024-06-27T16:15:12.110
Modified: 2025-08-27T16:18:23.637
Link: CVE-2024-6388

No data.

No data.