Back to search
CVE-2025-5467
Published: Dec 10, 2025
Modified: Dec 10, 2025
PUBLISHED
Description
It was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.
| Vendor | Product | Versions |
|---|---|---|
Canonical | apport | affected 2.20.11-0ubuntu82 - < 2.20.11-0ubuntu82.7affected 2.32.0 - < 2.32.0-0ubuntu5.1affected 2.20.9 - < 2.20.9-0ubuntu7.29+esm1affected 2.28.1 - < 2.28.1-0ubuntu3.6affected 2.33.0 - < 2.33.0-0ubuntu1+2 more versions |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now