CVE-2025-5467

I

t was discovered that process_crash() in data/apport in Canonical's Apport crash reporting tool may create crash files with incorrect group ownership, possibly exposing crash information beyond expected or intended groups.

References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*
cpe:2.3:a:canonical:apport:*:*:*:*:*:*:*:*

History

17 Dec 2025, 17:12

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-10 18:16

Updated : 2025-12-17 17:12


NVD link : CVE-2025-5467

Mitre link : CVE-2025-5467

CVE.ORG link : CVE-2025-5467


JSON object : View

Products Affected
CWE
CWE-708

Incorrect Ownership Assignment