USN-7035-1: AppArmor vulnerability
It was discovered that the AppArmor policy compiler incorrectly generated looser restrictions than expected for rules allowing mount operations. A local attacker could possibly use this to bypass AppArmor restrictions in applications where some mount operations were permitted.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7035-1?
The severity of USN-7035-1 is classified as medium due to the potential for local attackers to bypass AppArmor restrictions.
How do I fix USN-7035-1?
To fix USN-7035-1, you should upgrade to AppArmor version 3.0.4-2ubuntu2.4 or 2.13.3-7ubuntu5.4 depending on your Ubuntu version.
What systems are affected by USN-7035-1?
USN-7035-1 affects Ubuntu 20.04 and 22.04 with the specified versions of the AppArmor package.
What could a local attacker do to exploit USN-7035-1?
A local attacker could exploit USN-7035-1 to bypass AppArmor restrictions by performing unauthorized mount operations.
Is there a workaround for USN-7035-1?
There is no official workaround for USN-7035-1; the recommended action is to apply the security update.