6.4
CVSSv2

CVE-2011-3152

Published: 27/04/2014 Updated: 29/08/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

DistUpgrade/DistUpgradeFetcherCore.py in Update Manager prior to 1:0.87.31.1, 1:0.134.x prior to 1:0.134.11.1, 1:0.142.x prior to 1:0.142.23.1, 1:0.150.x prior to 1:0.150.5.1, and 1:0.152.x prior to 1:0.152.25.5 on Ubuntu 8.04 up to and including 11.10 does not verify the GPG signature before extracting an upgrade tarball, which allows man-in-the-middle malicious users to (1) create or overwrite arbitrary files via a directory traversal attack using a crafted tar file, or (2) bypass authentication via a crafted meta-release file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

canonical update-manager

canonical update-manager 1\\

canonical ubuntu linux 8.04

canonical ubuntu linux 11.04

canonical ubuntu linux 11.10

canonical ubuntu linux 10.04

canonical ubuntu linux 10.10

Vendor Advisories

USN-1284-1 introduced a regression in Update Manager ...
Update Manager could be made to overwrite files as the administrator ...