CVE-2020-16128

The aptdaemon DBus interface disclosed file existence disclosure by setting Terminal/DebconfSocket properties, aka GHSL-2020-192 and GHSL-2020-196. This affected versions prior to 1.1.1+bzr982-0ubuntu34.1, 1.1.1+bzr982-0ubuntu32.3, 1.1.1+bzr982-0ubuntu19.5, 1.1.1+bzr982-0ubuntu14.5.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:20.10:*:*:*:*:*:*:*

History

21 Nov 2024, 05:06

Type Values Removed Values Added
References () https://bugs.launchpad.net/ubuntu/+source/aptdaemon/+bug/1899513 - Broken Link () https://bugs.launchpad.net/ubuntu/+source/aptdaemon/+bug/1899513 - Broken Link
References () https://usn.ubuntu.com/usn/usn-4664-1 - Patch, Third Party Advisory () https://usn.ubuntu.com/usn/usn-4664-1 - Patch, Third Party Advisory

Information

Published : 2020-12-09 04:15

Updated : 2024-11-21 05:06


NVD link : CVE-2020-16128

Mitre link : CVE-2020-16128

CVE.ORG link : CVE-2020-16128


JSON object : View

Products Affected

canonical

  • ubuntu_linux
CWE
CWE-209

Generation of Error Message Containing Sensitive Information