CVE-2024-29068
MEDIUMsnapd < 2.62 - Denial of Service via Non-Regular File Extraction
Title source: llmDescription
In snapd versions prior to 2.62, snapd failed to properly check the file type when extracting a snap. The snap format is a squashfs file-system image and so can contain files that are non-regular files (such as pipes or sockets etc). Various file entries within the snap squashfs image (such as icons etc) are directly read by snapd when it is extracted. An attacker who could convince a user to install a malicious snap which contained non-regular files at these paths could then cause snapd to block indefinitely trying to read from such files and cause a denial of service.
References (2)
Core 2
Core References
Issue Tracking, Patch
https://github.com/snapcore/snapd/pull/13682
Scores
CVSS v3
5.8
EPSS
0.0003
EPSS Percentile
8.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-20
Status
published
Products (2)
canonical/snapd
< 2.62
snapcore/snapd
0 - 2.62Go
Published
Jul 25, 2024
Tracked Since
Feb 18, 2026