Nixpkgs security tracker

Login with GitHub

Suggestion detail

Dismissed
updated 3 months, 2 weeks ago by @LeSuisse Activity log
  • Created suggestion
  • @LeSuisse ignored package haskellPackages.apportionment
  • @LeSuisse deleted maintainer @thielema maintainer.delete
  • @LeSuisse dismissed
Ubuntu Apport Insecure File Permissions Vulnerability

It was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.

Affected products

apport
  • <2.33.0-0ubuntu1
  • <2.28.1-0ubuntu3.6
  • <2.20.1-0ubuntu2.30+esm5
  • <2.20.9-0ubuntu7.29+esm1
  • <2.20.11-0ubuntu27.28
  • <2.20.11-0ubuntu82.7
  • <2.32.0-0ubuntu5.1
Ignored packages (1)
`apport` is not packaged in nixpkgs.