CVE-2016-9951
moderate-risk
Published 2016-12-17
An issue was discovered in Apport before 2.20.4. A malicious Apport crash file can contain a restart command in `RespawnCommand` or `ProcCmdline` fields. This command will be executed if a user clicks the Relaunch button on the Apport prompt from the malicious crash file. The fix is to only show the Relaunch button on Apport crash files generated by local systems. The Relaunch button will be hidden when crash files are opened directly in Apport-GTK.
Do I need to act?
~
7.9% chance of exploitation in next 30 days
EPSS score — moderate exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
!
1 public exploit available
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
6
CVSS 6.5/10
Medium
NETWORK
/ LOW complexity
Affected Products (1)
Affected Vendors
References (12)
Third Party Advisory
http://www.securityfocus.com/bid/95011
Issue Tracking
https://bugs.launchpad.net/apport/+bug/1648806
Issue Tracking
https://github.com/DonnchaC/ubuntu-apport-exploitation
Third Party Advisory
http://www.securityfocus.com/bid/95011
Issue Tracking
https://bugs.launchpad.net/apport/+bug/1648806
Issue Tracking
https://github.com/DonnchaC/ubuntu-apport-exploitation
39
/ 100
moderate-risk
Severity
24/34 · High
Exploitability
10/34 · Low
Exposure
5/34 · Minimal