Language:
https://security-tracker.debian.org/tracker/source-package/snapd
https://www.debian.org/security/2022/dsa-5080
https://security-tracker.debian.org/tracker/CVE-2021-44730
https://security-tracker.debian.org/tracker/CVE-2021-44731
Severity: High
ID: 158201
File Name: debian_DSA-5080.nasl
Version: 1.6
Type: local
Agent: unix
Family: Debian Local Security Checks
Published: 2/21/2022
Updated: 12/13/2022
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Nessus Agent, Nessus
Risk Factor: High
Score: 7.3
Risk Factor: Medium
Base Score: 6.9
Temporal Score: 5.4
Vector: CVSS2#AV:L/AC:M/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2021-44731
Risk Factor: High
Base Score: 8.8
Temporal Score: 7.9
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CVSS Score Source: CVE-2021-44730
CPE: cpe:/o:debian:debian_linux:11.0, p-cpe:/a:debian:debian_linux:ubuntu-core-launcher, cpe:/o:debian:debian_linux:10.0, p-cpe:/a:debian:debian_linux:snap-confine, p-cpe:/a:debian:debian_linux:golang-github-ubuntu-core-snappy-dev, p-cpe:/a:debian:debian_linux:snapd, p-cpe:/a:debian:debian_linux:golang-github-snapcore-snapd-dev
Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 2/18/2022
Vulnerability Publication Date: 2/17/2022
CVE: CVE-2021-44730, CVE-2021-44731