Data Exposure in Budgie Extras Clockworks Applet by Ubuntu
CVE-2023-49342

6MEDIUM

Key Information:

Vendor
CVE Published:
14 December 2023

What is CVE-2023-49342?

The Budgie Extras Clockworks applet in Ubuntu may allow unauthorized views or manipulation of temporary data passed between application components. This data, stored in a publicly accessible location, can be exploited by local attackers. By pre-manipulating the data file, malicious users could present misleading information or deny legitimate users access to the applet and its controls, posing risks to user experience and system integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Budgie Extras Linux v1.4.0

References

CVSS V3.1

Score:
6
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Sam Lane
David Mohammed
.