PT-2019-4765 · Canonical · Apport+1

·

CVE-2019-15790

·

Publicado

2019-10-29

·

Atualizado

2025-11-03

CVSS v2.0

5.0

Média

VetorAV:L/AC:H/Au:S/C:C/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apport versions prior to 2.20.11-0ubuntu16 Apport versions prior to 2.20.11-0ubuntu8.6 Apport versions prior to 2.20.9-0ubuntu7.12 Apport versions prior to 2.20.1-0ubuntu2.22 Apport versions prior to 2.14.1-0ubuntu3.29+esm3
Description The issue is related to the apport service in the Ubuntu operating system, which has inadequate access restrictions. An unprivileged user could exploit this to read information about a privileged running process by exploiting PID recycling. This information could then be used to obtain ASLR offsets for a process with an existing memory corruption vulnerability. The apport service reads and writes information on a crashed process to /proc/$PID with elevated privileges and determines which user the crashed process belongs to by reading /proc/$PID through the get pid info() function in data/apport.
Recommendations For Apport version prior to 2.20.11-0ubuntu16, update to version 2.20.11-0ubuntu16 or later. For Apport version prior to 2.20.11-0ubuntu8.6, update to version 2.20.11-0ubuntu8.6 or later. For Apport version prior to 2.20.9-0ubuntu7.12, update to version 2.20.9-0ubuntu7.12 or later. For Apport version prior to 2.20.1-0ubuntu2.22, update to version 2.20.1-0ubuntu2.22 or later. For Apport version prior to 2.14.1-0ubuntu3.29+esm3, update to version 2.14.1-0ubuntu3.29+esm3 or later.

Exploit

Correção

Improper Privilege Management

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2020-01337
CVE-2019-15790
USN-4171-1
USN-4171-2
USN-4171-3
USN-4171-4
USN-4171-5
USN-4171-6

Produtos afetados

Apport
Ubuntu