Security Advisory

CVE-2019-7304

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-04-23 15:57:32
Last updated 2024-09-16 18:38:22
Assigner canonical
State PUBLISHED

Description

Canonical snapd before version 2.37.1 incorrectly performed socket owner validation, allowing an attacker to run arbitrary commands as root. This issue affects: Canonical snapd versions prior to 2.37.1.