7.2

CVE-2015-1318

Exploit

The crash reporting feature in Apport 2.13 through 2.17.x before 2.17.1 allows local users to gain privileges via a crafted usr/share/apport/apport file in a namespace (container).

Data is provided by the National Vulnerability Database (NVD)
Apport ProjectApport Version2.13
Apport ProjectApport Version2.13.1
Apport ProjectApport Version2.13.2
Apport ProjectApport Version2.13.3
Apport ProjectApport Version2.14
Apport ProjectApport Version2.14.1
Apport ProjectApport Version2.14.2
Apport ProjectApport Version2.14.3
Apport ProjectApport Version2.14.4
Apport ProjectApport Version2.14.5
Apport ProjectApport Version2.14.6
Apport ProjectApport Version2.14.7
Apport ProjectApport Version2.15
Apport ProjectApport Version2.15.1
Apport ProjectApport Version2.16
Apport ProjectApport Version2.16.1
Apport ProjectApport Version2.16.2
Apport ProjectApport Version2.17
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 26.7% 0.961
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C