Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0950

Опубликовано: 19 июн. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The Apport hook (DistUpgradeApport.py) in Update Manager, as used by Ubuntu 12.04 LTS, 11.10, and 11.04, uploads the /var/log/dist-upgrade directory when reporting bugs to Launchpad, which allows remote attackers to read repository credentials by viewing a public bug report. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0949.

РелизСтатусПримечание
devel

not-affected

1:0.170
hardy

not-affected

lucid

not-affected

natty

released

1:0.150.5.4
oneiric

released

1:0.152.25.12
precise

released

1:0.156.14.5
upstream

needs-triage

Показывать по

EPSS

Процентиль: 48%
0.0025
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 13 лет назад

The Apport hook (DistUpgradeApport.py) in Update Manager, as used by Ubuntu 12.04 LTS, 11.10, and 11.04, uploads the /var/log/dist-upgrade directory when reporting bugs to Launchpad, which allows remote attackers to read repository credentials by viewing a public bug report. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0949.

debian
больше 13 лет назад

The Apport hook (DistUpgradeApport.py) in Update Manager, as used by U ...

github
больше 3 лет назад

The Apport hook (DistUpgradeApport.py) in Update Manager, as used by Ubuntu 12.04 LTS, 11.10, and 11.04, uploads the /var/log/dist-upgrade directory when reporting bugs to Launchpad, which allows remote attackers to read repository credentials by viewing a public bug report. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0949.

EPSS

Процентиль: 48%
0.0025
Низкий

5 Medium

CVSS2