Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2020-27348
Description:In some conditions, a snap package built by snapcraft includes the current directory in LD_LIBRARY_PATH, allowing a malicious snap to gain code execution within the context of another snap if both plug the home interface or similar. This issue affects snapcraft versions prior to 4.4.4, prior to 2.43.1+16.04.1, and prior to 2.43.1+18.04.1.
Test IDs: 1.3.6.1.4.1.25623.1.0.844746  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2020-27348
https://bugs.launchpad.net/bugs/1901572
https://bugs.launchpad.net/bugs/1901572
https://github.com/snapcore/snapcraft/pull/3345
https://github.com/snapcore/snapcraft/pull/3345
https://usn.ubuntu.com/usn/usn-4661-1
https://usn.ubuntu.com/usn/usn-4661-1




© 1998-2025 E-Soft Inc. All rights reserved.