Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m4rr-rf2f-g267

Опубликовано: 21 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.7

Описание

Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allows an attacker to create or overwrite arbitrary files with the privileges of the executing user via an attacker controlled key names in crash report files.

Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allows an attacker to create or overwrite arbitrary files with the privileges of the executing user via an attacker controlled key names in crash report files.

EPSS

Процентиль: 15%
0.00237
Низкий

6.7 Medium

CVSS4

Дефекты

CWE-23

Связанные уязвимости

nvd
20 дней назад

Path traversal in apport-unpack in Canonical Apport before 2.36.0, 2.34.2, and 2.28.4 on Linux allows an attacker to create or overwrite arbitrary files with the privileges of the executing user via an attacker controlled key names in crash report files.

EPSS

Процентиль: 15%
0.00237
Низкий

6.7 Medium

CVSS4

Дефекты

CWE-23