Vulnerabilities (CVE)

Filtered by vendor Ubports Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-1423 2 Signond Project, Ubports 2 Signond, Ubuntu Touch 2020-05-12 4.3 MEDIUM 5.5 MEDIUM
signond before 8.57+15.04.20141127.1-0ubuntu1, as used in Ubuntu Touch, did not properly restrict applications from querying oath tokens due to incorrect checks and the missing installation of the signon-apparmor-extension. An attacker could use this create a malicious click app that collects oauth tokens for other applications, exposing sensitive information.
CVE-2015-7946 1 Ubports 1 Unity8 2020-05-12 2.1 LOW 4.6 MEDIUM
Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1.