Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1.
References
Link | Resource |
---|---|
https://launchpad.net/bugs/1525981 | Third Party Advisory |
https://launchpad.net/bugs/1525981 | Third Party Advisory |
Configurations
History
21 Nov 2024, 02:37
Type | Values Removed | Values Added |
---|---|---|
References | () https://launchpad.net/bugs/1525981 - Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : 2.1
v3 : 7.3 |
Information
Published : 2020-05-07 23:15
Updated : 2024-11-21 02:37
NVD link : CVE-2015-7946
Mitre link : CVE-2015-7946
CVE.ORG link : CVE-2015-7946
JSON object : View
Products Affected
ubports
- unity8
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor