PT-2021-21685 · Canonical · Multipass

Matthew Conway

·

Published

2021-10-01

·

Updated

2022-10-25

·

CVE-2021-3747

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Multipass version 1.7.0 through 1.7.1
Description The issue concerns the MacOS version of Multipass, where the application directory was accidentally installed with incorrect owner permissions.
Recommendations For Multipass version 1.7.0 and 1.7.1, update to version 1.7.2 to resolve the issue.

Fix

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2021-3747

Affected Products

Multipass