Untriaged
Ubuntu Apport Insecure File Permissions Vulnerability
It was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.
References
Affected products
apport
- <2.28.1-0ubuntu3.6
- <2.20.9-0ubuntu7.29+esm1
- <2.32.0-0ubuntu5.1
- <2.20.11-0ubuntu27.28
- <2.20.1-0ubuntu2.30+esm5
- <2.33.0-0ubuntu1
- <2.20.11-0ubuntu82.7
Package maintainers
-
@thielema Henning Thielemann <nix@henning-thielemann.de>