CVE-2025-5467

It was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-10 18:16

Updated : 2025-12-17 17:12


NVD link : CVE-2025-5467

Mitre link : CVE-2025-5467

CVE.ORG link : CVE-2025-5467


JSON object : View

Products Affected

canonical

  • apport
CWE
CWE-708

Incorrect Ownership Assignment