Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-13364
HistoryFeb 18, 2022 - 12:00 a.m.

snapd competition condition issue vulnerability

2022-02-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
13
snapd
package manager
contention issue
vulnerability
local attackers
root privileges
arbitrary code
privilege escalation
mount namespace.

EPSS

0.001

Percentile

17.3%

Snapd is an open source, cross-platform package management tool. snapd is vulnerable to a contention issue, which can be exploited by local attackers to gain root privileges and execute arbitrary code to gain privilege escalation by binding to mount their own content in snap’s private mount namespace.