https://seclists.org/oss-sec/2025/q2/213: Local information disclosuin apport and systemd-codump
Published Jun 5, 2025
·Updated
Affected Software
2 affected components
Rocky Linux Rocky Linux
Red Hat RHEL
Frequently Asked Questions
1
What is the severity of CVE-2025-XXXX?
The severity of CVE-2025-XXXX is classified as medium due to the potential for local information disclosure.
2
How do I fix CVE-2025-XXXX?
To fix CVE-2025-XXXX, update your system to the latest version of Rocky Linux or Red Hat RHEL that includes the security patch.
3
What software is affected by CVE-2025-XXXX?
CVE-2025-XXXX affects the apport and systemd-coredump components on Rocky Linux and Red Hat RHEL.
4
How can CVE-2025-XXXX be exploited?
CVE-2025-XXXX can be exploited by local users to access sensitive information through improper handling during process core dumps.
5
Is CVE-2025-XXXX a remote vulnerability?
No, CVE-2025-XXXX is not a remote vulnerability; it requires local access for exploitation.