6.5

CVE-2021-3709

Exploit

Function check_attachment_for_errors() in file data/general-hooks/ubuntu.py could be tricked into exposing private data via a constructed crash file. This issue affects: apport 2.14.1 versions prior to 2.14.1-0ubuntu3.29+esm8; 2.20.1 versions prior to 2.20.1-0ubuntu2.30+esm2; 2.20.9 versions prior to 2.20.9-0ubuntu7.26; 2.20.11 versions prior to 2.20.11-0ubuntu27.20; 2.20.11 versions prior to 2.20.11-0ubuntu65.3;

Data is provided by the National Vulnerability Database (NVD)
CanonicalApport Version2.14.1-0ubuntu1
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu2
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.1
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.2
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.3
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.4
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.5
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.6
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.7
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.8
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.9
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.10
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.11
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.12
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.13
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.14
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.15
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.16
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.17
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.18
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.19
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.20
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.21
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.23
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.24
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.25
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.27
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.28
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.29
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.14.1-0ubuntu3.29+esm7
   CanonicalUbuntu Linux Version14.04 SwEditionesm
CanonicalApport Version2.20.1-0ubuntu1
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.1
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.2
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.4
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.5
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.6
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.7
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.8
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.9
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.10
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.12
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.13
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.14
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.15
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.16
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.17
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.18
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.19
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.20
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.21
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.22
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.23
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.25
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.26
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.27
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.28
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.30
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.1-0ubuntu2.30+esm1
   CanonicalUbuntu Linux Version16.04
CanonicalApport Version2.20.9-0ubuntu1
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu2
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu3
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu4
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu5
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu6
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.1
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.2
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.3
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.4
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.5
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.6
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.7
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.8
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.9
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.10
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.11
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.12
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.13
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.14
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.15
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.16
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.17
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.18
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.19
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.20
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.21
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.23
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.9-0ubuntu7.24
   CanonicalUbuntu Linux Version18.04
CanonicalApport Version2.20.11-0ubuntu8
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu9
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu10
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu11
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu12
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu13
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu14
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu15
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu16
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu17
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu18
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu19
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu20
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu21
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu22
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu23
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu24
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu25
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu26
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.2
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.3
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.4
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.5
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.6
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.7
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.8
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.9
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.10
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.11
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.12
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.13
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.14
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.16
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.17
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu27.18
   CanonicalUbuntu Linux Version20.04
CanonicalApport Version2.20.11-0ubuntu28
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu29
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu30
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu31
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu32
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu33
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu34
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu35
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu36
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu37
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu38
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu39
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu40
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu41
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu42
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu43
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu44
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu45
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu46
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu47
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu48
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu49
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu50
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu50.1
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu50.2
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu50.3
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu50.5
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu50.7
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu51
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu52
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu53
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu54
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu55
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu56
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu57
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu58
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu59
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu60
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu61
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu62
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu63
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu64
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu65
   CanonicalUbuntu Linux Version21.04
CanonicalApport Version2.20.11-0ubuntu65.1
   CanonicalUbuntu Linux Version21.04
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.07% 0.225
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:P/I:N/A:N
security@ubuntu.com 6.5 2 4
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

CWE-538 Insertion of Sensitive Information into Externally-Accessible File or Directory

The product places sensitive information into files or directories that are accessible to actors who are allowed to have access to the files, but not to the sensitive information.