Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.
History

Wed, 27 Aug 2025 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Canonical
Canonical ubuntu Advantage Desktop Daemon
Weaknesses CWE-319
CPEs cpe:2.3:a:canonical:ubuntu_advantage_desktop_daemon:*:*:*:*:*:*:*:*
Vendors & Products Canonical
Canonical ubuntu Advantage Desktop Daemon

cve-icon MITRE

Status: PUBLISHED

Assigner: canonical

Published:

Updated: 2024-08-01T21:41:03.306Z

Reserved: 2024-06-27T14:21:13.801Z

Link: CVE-2024-6388

cve-icon Vulnrichment

Updated: 2024-08-01T21:41:03.306Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-27T16:15:12.110

Modified: 2025-08-27T16:18:23.637

Link: CVE-2024-6388

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.