Ubuntu Apport vulnerabilities
2 known vulnerabilities affecting ubuntu/apport.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2019-7307HIGHCVSS 7.0vbefore 2.14.1-0ubuntu3.29+esm1vbefore 2.20.1-0ubuntu2.19+3 more2019-08-29
CVE-2019-7307 [HIGH] CWE-367 CVE-2019-7307: Apport before versions 2.14.1-0ubuntu3.29+esm1, 2.20.1-0ubuntu2.19, 2.20.9-0ubuntu7.7, 2.20.10-0ubun
Apport before versions 2.14.1-0ubuntu3.29+esm1, 2.20.1-0ubuntu2.19, 2.20.9-0ubuntu7.7, 2.20.10-0ubuntu27.1, 2.20.11-0ubuntu5 contained a TOCTTOU vulnerability when reading the users ~/.apport-ignore.xml file, which allows a local attacker to replace this file with a symlink to any other file on the system and so cause Apport to include the contents of t
cvelistv5nvd
CVE-2015-1341HIGHCVSS 7.8≥ unspecified, < 2.0.1-0ubuntu17.13≥ unspecified, < 2.19.1-0ubuntu4+3 more2019-04-22
CVE-2015-1341 [HIGH] CWE-264 CVE-2015-1341: Any Python module in sys.path can be imported if the command line of the process triggering the core
Any Python module in sys.path can be imported if the command line of the process triggering the coredump is Python and the first argument is -m in Apport before 2.19.2 function _python_module_path.
cvelistv5nvd