ISOMAN

CVE

CVE-2021-32554

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the xorg package apport hooks, it could expose private data to other local users.

Severity
HIGH
CVSS
7.3
Published
Modified

Linked Releases

References

  1. https://bugs.launchpad.net/ubuntu/+source/apport/+bug/1917904
  2. https://bugs.launchpad.net/ubuntu/+source/apport/+bug/1917904