Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-10600

ubuntu-image 1.0 before 2017-07-07, when invoked as non-root, creates files in the resulting image with the uid of the invoking user. When the resulting image is booted, a local attacker with the same uid as the image creator has unintended access to cloud-init and snapd directories.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.0%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 4.6
Products affected by CVE-2017-10600


Contact Us

Shodan ® - All rights reserved