Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestion detail

Untriaged
created 4 months ago
Ubuntu Apport Insecure File Permissions Vulnerability

It was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.

Affected products

apport
  • <2.28.1-0ubuntu3.6
  • <2.20.9-0ubuntu7.29+esm1
  • <2.32.0-0ubuntu5.1
  • <2.20.11-0ubuntu27.28
  • <2.20.1-0ubuntu2.30+esm5
  • <2.33.0-0ubuntu1
  • <2.20.11-0ubuntu82.7

Matching in nixpkgs

Package maintainers