Novell Home

CVE-2009-1295

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

CVE-2009-1295 at MITRE

Details

Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5.2 on Ubuntu 9.04 does not properly remove files from the application's crash-report directory, which allows local users to delete arbitrary files via unspecified vectors.
Novell Bugzilla entry: 495053

SUSE Security Advisories:

Product(s) Fixed package version(s) References
openSUSE 11.1
  • apport >= 0.114-8.6.1
  • apport-crashdb-opensuse >= 0.114-8.6.1
  • apport-gtk >= 0.114-8.6.1
  • apport-qt >= 0.114-8.6.1
  • apport-retrace >= 0.114-8.6.1
SAT Patch Nr: 816

Novell® Making IT Work As One

© 2009 Novell, Inc. All Rights Reserved.