UBports Ubuntu Touch 16.04 allows the screen-unlock passcode to be used for a privileged shell via Sudo. This passcode is only four digits, far below typical length/complexity for a user account's password. NOTE: a third party states "The described attack cannot be executed as demonstrated.
References
Link Resource
https://github.com/filipkarc/PoC-ubuntutouch-pin-privesc Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-09-08T23:38:32

Updated: 2024-07-03T15:03:55.228Z

Reserved: 2022-09-08T00:00:00


Link: CVE-2022-40297

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2022-09-09T00:15:08.793

Modified: 2024-05-17T02:13:18.643


Link: CVE-2022-40297

JSON object: View

cve-icon Redhat Information

No data.

CWE