*** This bug is a security vulnerability ***

Private security bug reported:

Binary package hint: apport

ProblemType kernelcrash reports do not seem to be marked private when
filed.  This leads to the reporter's kernel memory being potentially
exposed to the Internet at large.  It would be better if this did not
happen.

I noticed this via bug 417052

ProblemType: Bug
ApportLog:
 
Architecture: i386
Date: Fri Aug 21 18:35:59 2009
DistroRelease: Ubuntu 9.10
Package: apport 1.7-0ubuntu2
PackageArchitecture: all
ProcEnviron:
 LANGUAGE=en_US.UTF-8
 LC_COLLATE=C
 PATH=(custom, user)
 LANG=en_US.UTF-8
 SHELL=/bin/zsh
ProcVersionSignature: Ubuntu 2.6.31-4.23-generic
SourcePackage: apport
Uname: Linux 2.6.31-4-generic i686

** Affects: apport (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: apport-bug i386

-- 
Kernel crash reports are not marked private
https://bugs.launchpad.net/bugs/417059
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to