Vulnerability Description
ubuntu-image 1.0 before 2017-07-07, when invoked as non-root, creates files in the resulting image with the uid of the invoking user. When the resulting image is booted, a local attacker with the same uid as the image creator has unintended access to cloud-init and snapd directories.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical | Ubuntu-Image | 1.0 |
Related Weaknesses (CWE)
References
- https://forum.snapcraft.io/t/ownership-bug-in-ubuntu-image/1285Third Party Advisory
- https://forum.snapcraft.io/t/ownership-bug-in-ubuntu-image/1285Third Party Advisory
FAQ
What is CVE-2017-10600?
CVE-2017-10600 is a vulnerability with a CVSS score of 5.9 (MEDIUM). ubuntu-image 1.0 before 2017-07-07, when invoked as non-root, creates files in the resulting image with the uid of the invoking user. When the resulting image is booted, a local attacker with the same...
How severe is CVE-2017-10600?
CVE-2017-10600 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-10600?
Check the references section above for vendor advisories and patch information. Affected products include: Canonical Ubuntu-Image.