Lucene search

K
ubuntuUbuntuUSN-5243-1
HistoryJan 20, 2022 - 12:00 a.m.

AIDE vulnerability

2022-01-2000:00:00
ubuntu.com
87
aide vulnerability
ubuntu
denial of service
arbitrary code
base64
intrusion detection

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.4

Confidence

High

EPSS

0

Percentile

9.8%

Releases

  • Ubuntu 21.10
  • Ubuntu 21.04
  • Ubuntu 20.04 LTS
  • Ubuntu 18.04 ESM

Packages

  • aide - Advanced Intrusion Detection Environment

Details

David Bouman discovered that AIDE incorrectly handled base64 operations. A
local attacker could use this issue to cause AIDE to crash, resulting in a
denial of service, or possibly execute arbitrary code.

OSVersionArchitecturePackageVersionFilename
Ubuntu21.10noarchaide< 0.17.3-4ubuntu0.1UNKNOWN
Ubuntu21.10noarchaide-common< 0.17.3-4ubuntu0.1UNKNOWN
Ubuntu21.10noarchaide-dbgsym< 0.17.3-4ubuntu0.1UNKNOWN
Ubuntu21.10noarchaide-dynamic< 0.17.3-4ubuntu0.1UNKNOWN
Ubuntu21.10noarchaide-dynamic-dbgsym< 0.17.3-4ubuntu0.1UNKNOWN
Ubuntu21.10noarchaide-xen< 0.17.3-4ubuntu0.1UNKNOWN
Ubuntu21.04noarchaide< 0.17.3-1ubuntu0.1UNKNOWN
Ubuntu21.04noarchaide-common< 0.17.3-1ubuntu0.1UNKNOWN
Ubuntu21.04noarchaide-dbgsym< 0.17.3-1ubuntu0.1UNKNOWN
Ubuntu21.04noarchaide-dynamic< 0.17.3-1ubuntu0.1UNKNOWN
Rows per page:
1-10 of 261

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.4

Confidence

High

EPSS

0

Percentile

9.8%