Rewterz

Rewterz Threat Advisory – CVE-2019-7092 Unspecified Cross Site Scripting Vulnerability

February 13, 2019
Rewterz

Rewterz Threat Alert – Hidden Cobra’s Skype-Job Campaign Targeting Inter-Bank Networks

February 14, 2019

Rewterz Threat Advisory -CVE-2019-7304 – Linux Local Privilege Escalation vulnerability via Snapd Socket

Severity: High

Analysis Summary

The remote socket address is incorrectly validated and parsed when performing access controls on its UNIX socket. A local attacker could use this to access privileged socket APIs and obtain administrator privileges. The vulnerability resides in the REST API for snapd service, a universal Linux packaging system that makes an application compatible for various Linux distributions without requiring any modification.

Impact

Privilege escalation

System access

Affected Products

snapd 2.28 through 2.37

Remediation

Vendor has released updates for the affected products. Update to patched version.

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.