USN-7211-1: Audacity vulnerability
16 January 2025
Audacity could expose sensitive information.
Releases
Packages
- audacity - fast, cross-platform audio editor
Details
Mike Salvatore discovered that Audacity incorrectly handled default
permissions of temporary files created by the application. An attacker
could possibly use this issue to obtain sensitive information.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 20.04
-
audacity
-
2.3.3-1ubuntu0.1~esm1
Available with Ubuntu Pro
Ubuntu 18.04
-
audacity
-
2.2.1-1ubuntu0.1~esm1
Available with Ubuntu Pro
Ubuntu 16.04
-
audacity
-
2.1.2-1ubuntu0.1~esm1
Available with Ubuntu Pro
In general, a standard system update will make all the necessary changes.