First published: Thu Sep 17 2020(Updated: )
Matthias Gerstner discovered that xawtv incorrectly handled opening files. A local attacker could possibly use this issue to open and write to arbitrary files and escalate privileges. (CVE-2020-13696)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/alevtd | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/fbtv | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/pia | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/radio | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/scantv | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/streamer | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/ttv | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/v4l-conf | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/webcam | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/xawtv | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/xawtv-plugin-qt | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/xawtv-plugins | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 | |
All of | ||
ubuntu/xawtv-tools | <3.103-3+deb8u1build0.16.04.1 | 3.103-3+deb8u1build0.16.04.1 |
Ubuntu | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-4518-1 is significant due to the potential for privilege escalation.
To fix USN-4518-1, you should upgrade to the patched version 3.103-3+deb8u1build0.16.04.1.
Affected software for USN-4518-1 includes xawtv, fbtv, and several other packages on Ubuntu 16.04.
USN-4518-1 addresses a local file handling vulnerability that could allow an attacker to open and write arbitrary files.
Yes, USN-4518-1 is related to CVE-2020-13696.