CVE-2024-6388: Medium severity Ubuntu Advantage Desktop Daemon vulnerability
Last updated 24 July 2024
Other sources
Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.
— NVD
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-6388?
CVE-2024-6388 has a medium severity level due to the risk of token leakage.
How do I fix CVE-2024-6388?
To fix CVE-2024-6388, update the Ubuntu Advantage Desktop Daemon to version 1.12 or later.
What does CVE-2024-6388 affect?
CVE-2024-6388 affects Ubuntu Advantage Desktop Daemon versions prior to 1.12.
Who discovered CVE-2024-6388?
CVE-2024-6388 was discovered by Marco Trevisan.
What is the main issue with CVE-2024-6388?
The main issue with CVE-2024-6388 is that it leaks the Pro token to unprivileged users in plaintext.