CVE-2020-8831: World writable root owned lock file created in user controllable location
Published Apr 22, 2020
·Updated
Apport creates a world writable lock file with root ownership in the world writable /var/lock/apport directory. If the apport/ directory does not exist (this is not uncommon as /var/lock is a tmpfs), it will create the directory, otherwise it will simply continue execution using the existing directory. This allows for a symlink attack if an attacker were to create a symlink at /var/lock/apport, changing apport's lock file location. This file could then be used to escalate privileges, for example. Fixed in versions 2.20.1-0ubuntu2.23, 2.20.9-0ubuntu7.14, 2.20.11-0ubuntu8.8 and 2.20.11-0ubuntu22.
Affected Software
5 affected components
Ubuntu=14.04
Ubuntu=16.04
Ubuntu=18.04
Ubuntu=19.10
Apport Project Apport
Event History
Apr 22, 2020
CVE Published
via MITRE·09:15 PM
Data Sourced
via MITRE·09:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·11:53 PM
Description
Data Sourced
via Debian·11:53 PM
DescriptionAffected Software
Feb 24, 2026
Data Sourced
via Ubuntu·12:58 AM
RemedyDescriptionSeverityAffected Software