Canonical snapd before version 2.37.1 incorrectly performed socket owner validation, allowing an attacker to run arbitrary commands as root. This issue affects: Canonical snapd versions prior to 2.37.1.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-7304.json"