It was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.
[
{
"events": [
{
"introduced": "2.20.1-0ubuntu1"
},
{
"fixed": "2.20.1-0ubuntu2.30"
}
]
},
{
"events": [
{
"introduced": "2.20.9-0ubuntu7"
},
{
"fixed": "2.20.9-0ubuntu7.29"
}
]
},
{
"events": [
{
"introduced": "2.20.11-0ubuntu27"
},
{
"fixed": "2.20.11-0ubuntu27.28"
}
]
},
{
"events": [
{
"introduced": "2.20.11-0ubuntu82"
},
{
"fixed": "2.20.11-0ubuntu82.7"
}
]
},
{
"events": [
{
"introduced": "2.28.1-0ubuntu1"
},
{
"fixed": "2.28.1-0ubuntu3.6"
}
]
},
{
"events": [
{
"introduced": "2.32.0-0ubuntu1"
},
{
"fixed": "2.32.0-0ubuntu5.1"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-5467.json"