CVE-2015-1318: High severity ubuntu python3-apport vulnerability
Published Apr 17, 2015
·Updated
The crash reporting feature in Apport 2.13 through 2.17.x before 2.17.1 allows local users to gain privileges via a crafted usr/share/apport/apport file in a namespace (container).
Affected Software
18 affected components
Apport Project Apport=2.13
Apport Project Apport=2.13.1
Apport Project Apport=2.13.2
Apport Project Apport=2.13.3
Apport Project Apport=2.14
Apport Project Apport=2.14.1
Apport Project Apport=2.14.2
Apport Project Apport=2.14.3
Apport Project Apport=2.14.4
Apport Project Apport=2.14.5
Apport Project Apport=2.14.6
Apport Project Apport=2.14.7
Apport Project Apport=2.15
Apport Project Apport=2.15.1
Apport Project Apport=2.16
Apport Project Apport=2.16.1
Apport Project Apport=2.16.2
Apport Project Apport=2.17
Remediation
Patch Available
Event History
Apr 17, 2015
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
via NVD·05:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2015-1318?
CVE-2015-1318 has a medium severity rating due to its potential for privilege escalation.
2
How do I fix CVE-2015-1318?
To fix CVE-2015-1318, upgrade Apport to version 2.17.1 or later.
3
Who is affected by CVE-2015-1318?
Local users running Apport version 2.13 through 2.17.0 are affected by CVE-2015-1318.
4
What software does CVE-2015-1318 impact?
CVE-2015-1318 impacts Apport versions 2.13 to 2.17.0.
5
What type of vulnerability is CVE-2015-1318?
CVE-2015-1318 is a local privilege escalation vulnerability.