USN-5628-2
Dashboard / Vulnerabilities / USN-5628-2
USN-5628-2
Summary: etcd vulnerabilities
Details: USN-5628-1 fixed vulnerabilities in etcd. This update provides the corresponding updates for Ubuntu 18.04 ESM. Original advisory details: It was discovered that etcd incorrectly handled certain specially crafted WAL files. An attacker could possibly use this issue to cause a denial of service. (CVE-2020-15106, CVE-2020-15112) It was discovered that etcd incorrectly handled directory permissions when trying to create a directory that exists already. An attacker could possibly use this issue to obtain sensitive information. (CVE-2020-15113) It was discovered that etcd incorrectly handled endpoint setup. An attacker could possibly use this issue to cause a denial of service. (CVE-2020-15114)
References: https://ubuntu.com/security/notices/USN-5628-2, https://ubuntu.com/security/CVE-2020-15106, https://ubuntu.com/security/CVE-2020-15112, https://ubuntu.com/security/CVE-2020-15113, https://ubuntu.com/security/CVE-2020-15114
Affected packages
Package
Name: etcd
Purl: pkg:deb/ubuntu/[email protected]+dfsg-1ubuntu0.1~esm1?arch=source&distro=esm-apps/bionic
Affected ranges
Type: ECOSYSTEM
Events:
