PT-2024-6091 · Snapd+5 · Snapd+5

Zeyad Gouda

·

Published

2024-03-14

·

Updated

2025-01-13

·

CVE-2024-29069

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions snapd versions prior to 2.62
Description The issue is related to the improper checking of symbolic link destinations when extracting a snap. This could allow an attacker to convince a user to install a malicious snap, which in turn could cause snapd to write out the contents of the symbolic link destination into a world-readable directory. As a result, an unprivileged user could gain access to privileged information. The snap format is a squashfs file-system image that can contain symbolic links and other file types. Various file entries within the snap squashfs image, such as icons and desktop files, are directly read by snapd when it is extracted.
Recommendations To resolve the issue, update to version 2.62 or later. As a temporary workaround, consider restricting the installation of snaps from untrusted sources to minimize the risk of exploitation. Avoid using snaps that contain symbolic links at paths that could be used to write out the contents of the symbolic link destination into a world-readable directory.

Fix

Link Following

Weakness Enumeration

Related Identifiers

ALT-PU-2024-13230
BDU:2024-06997
CVE-2024-29069
GHSA-69P6-GP5X-J269
GO-2024-3009
USN-6940-1
USN-6940-2

Affected Products

Alt Linux
Debian
Linuxmint
Red Os
Ubuntu
Snapd