Back to overview

CVE-2023-1523

CRITICAL Exploitation: PoC
10.0
CVSS 3.1
Description
Using the TIOCLINUX ioctl request, a malicious snap could inject contents into the input of the controlling terminal which could allow it to cause arbitrary commands to be executed outside of the snap sandbox after the snap exits. Graphical terminal emulators like xterm, gnome-terminal and others are not affected - this can only be exploited when snaps are run on a virtual console.

Metadata

CVE ID
CVE-2023-1523
State
PUBLISHED
Assigner
canonical
Reserved
2023-03-20 17:41 UTC
Published
2023-09-01 18:41 UTC
Last updated
2024-10-01 13:08 UTC
Vendor / Product
Canonical Ltd. / snapd
Sources
cve.org  ·  NVD

Severity & Metrics

10.0 CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
SSVC — CISA Coordinator
Exploitation
PoC
Automatable
yes
Tech. Impact
total
Affected products (1)
VendorProductPlatformVersions
Canonical Ltd. snapd Linux 2.59.5
CVSS scores (1)
ScoreSeverityVersionSourceVector
10.0 CRITICAL 3.1 cna CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Back to overview