AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-10600

MEDIUM · CVSS 5.9 EPSS 0.29%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-07-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2017-10600
Severity
MEDIUM
CVSS
5.9
EPSS
0.29%
Ubuntu

Original NVD Description

ubuntu-image 1.0 before 2017-07-07, when invoked as non-root, creates files in the resulting image with the uid of the invoking user. When the resulting image is booted, a local attacker with the same uid as the image creator has unintended access to cloud-init and snapd directories.