CVE-2009-1295 Information

Description

Apport before 0.108.4 on Ubuntu 8.04 LTS before 0.119.2 on Ubuntu 8.10 and before 1.0-0ubuntu5.2 on Ubuntu 9.04 does not properly remove files from the application’s crash-report directory which allows local users to delete arbitrary files via unspecified vectors.

Reference

http://lists.opensuse.org/opensuse-security-announce/2009-05/msg00000.html http://secunia.com/advisories/34947 http://secunia.com/advisories/34952 http://secunia.com/advisories/35065 http://www.securityfocus.com/bid/34776 http://www.ubuntu.com/usn/usn-768-1 https://bugs.launchpad.net/bugs/357024 https://launchpad.net/bugs/cve/2009-1295

Share on: