Security Advisory

CVE-2021-32553

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-06-12 03:40:40
Last updated 2024-09-16 22:51:04
Assigner canonical
CVSS score 7.3
State PUBLISHED

Description

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-17 package apport hooks, it could expose private data to other local users.