It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-17 package apport hooks, it could expose private data to other local users.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "apport" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "apport-gtk" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "apport-kde" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "apport-noui" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "apport-retrace" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "apport-valgrind" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "dh-apport" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "python-apport" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "python-problem-report" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "python3-apport" }, { "binary_version": "2.14.1-0ubuntu3.29+esm7", "binary_name": "python3-problem-report" } ] }
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "apport" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "apport-gtk" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "apport-kde" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "apport-noui" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "apport-retrace" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "apport-valgrind" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "dh-apport" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "python-apport" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "python-problem-report" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "python3-apport" }, { "binary_version": "2.20.1-0ubuntu2.30+esm1", "binary_name": "python3-problem-report" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "apport" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "apport-gtk" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "apport-kde" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "apport-noui" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "apport-retrace" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "apport-valgrind" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "dh-apport" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "python-apport" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "python-problem-report" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "python3-apport" }, { "binary_version": "2.20.9-0ubuntu7.24", "binary_name": "python3-problem-report" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "apport" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "apport-gtk" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "apport-kde" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "apport-noui" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "apport-retrace" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "apport-valgrind" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "dh-apport" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "python3-apport" }, { "binary_version": "2.20.11-0ubuntu27.18", "binary_name": "python3-problem-report" } ] }