First published: Thu Feb 17 2022(Updated: )
Last updated 24 July 2024
Credit: security@ubuntu.com security@ubuntu.com
Affected Software | Affected Version | How to fix |
---|---|---|
Canonical snapd | <2.54.3 | |
Canonical Ubuntu Linux | =18.04 | |
Canonical Ubuntu Linux | =20.04 | |
Canonical Ubuntu Linux | =21.10 | |
debian/snapd | <=2.49-1+deb11u2 | 2.57.6-1 2.65.3-1 2.66.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3155 is a vulnerability in snapd 2.54.2 and earlier that allowed a local attacker to read information that should have been private.
CVE-2021-3155 has a severity score of 5.5, which is considered medium.
snapd versions 2.54.2 and earlier are affected by CVE-2021-3155.
To fix CVE-2021-3155, update snapd to versions 2.54.3+18.04, 2.54.3+20.04, or 2.54.3+21.10.1.
You can find more information about CVE-2021-3155 in the following references: [Link 1](https://github.com/snapcore/snapd/commit/6bcaeeccd16ed8298a301dd92f6907f88c24cc85), [Link 2](https://github.com/snapcore/snapd/commit/7d2a966620002149891446a53cf114804808dcca), [Link 3](https://ubuntu.com/security/notices/USN-5292-1).