ZeroHour

CVE-2021-32554

CVSS 3.1
5.5 medium
EPSS
<1%p21
Published
()
Modified
Description

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the xorg package apport hooks, it could expose private data to other local users.

Vendors
canonical
Products
ubuntu linux
Weakness
CWE-59, CWE-61
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.