Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

Ubuntu 20.04 LTS: USN-4537-1 Moderate: Aptdaemon Exposes Data

ubuntu
Calendar Grey September 24, 2020
Dist Ubuntu Esm H88
The Aptdaemon tool on Ubuntu systems may inadvertently reveal confidential data; a necessary update is advised to thwart potential local vulnerabilities.
Aptdaemon could be made to expose sensitive information.

Summary

Aptdaemon could be made to expose sensitive information.

Software Description:

- aptdaemon: transaction based package management service

Details:

Vaisha Bernard discovered that Aptdaemon incorrectly handled the Locale

property. A local attacker could use this issue to test for the presence of

local files.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 20.04 LTS:
  aptdaemon                       1.1.1+bzr982-0ubuntu32.2

Ubuntu 18.04 LTS:
  aptdaemon                       1.1.1+bzr982-0ubuntu19.4

Ubuntu 16.04 LTS:
  aptdaemon                       1.1.1+bzr982-0ubuntu14.4

After a standard system update you need to reboot your computer to make all
the necessary changes.

References

https://ubuntu.com/security/notices/USN-4537-1

CVE-2020-15703

September 24, 2020

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here