CVE Vulnerabilities

CVE-2009-1295

Published: Apr 30, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5.2 on Ubuntu 9.04 does not properly remove files from the applications crash-report directory, which allows local users to delete arbitrary files via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
ApportApport*0.1.0.8.1 (including)
UbuntuUbuntu8.0.4_lts (including)8.0.4_lts (including)
UbuntuUbuntu8.1.0 (including)8.1.0 (including)
UbuntuUbuntu9.0.4 (including)9.0.4 (including)
ApportUbuntudevel*
ApportUbuntuhardy*
ApportUbuntuintrepid*
ApportUbuntujaunty*

References