Privacy concern in auto generated UbiquitySyslog.txt: leaks all visible SSIDs, enabling geolocating user

Bug #2033133 reported by Leon
10
This bug affects 2 people
Affects Status Importance Assigned to Milestone
ubiquity (Ubuntu)
Confirmed
Undecided
Unassigned

Bug Description

When submitting a bug with "ubuntu-bug", it auto-uploads a UbiquitySyslog.txt file which contains all the visible SSIDs. This is a potential privacy concern as such information can be used to geolocate the launchpad user.

Clicking "Don't send" just closes the dialog box and no browser window is opened. I expected the browser window to still be opened even when I click "don't send", or let me choose what to send.

ProblemType: Bug
DistroRelease: Ubuntu 23.10
Package: ubiquity (not installed)
ProcVersionSignature: Ubuntu 6.3.0-7.7-generic 6.3.5
Uname: Linux 6.3.0-7-generic x86_64
NonfreeKernelModules: zfs
ApportVersion: 2.27.0-0ubuntu2
Architecture: amd64
CasperMD5CheckResult: pass
CasperVersion: 1.482
CurrentDesktop: ubuntu:GNOME
Date: Sat Aug 26 04:48:15 2023
InstallCmdLine: BOOT_IMAGE=/casper/vmlinuz layerfs-path=standard.live.squashfs --- quiet splash
LiveMediaBuild: Ubuntu 23.10 "Mantic Minotaur" - Daily amd64 (20230825)
ProcEnviron:
 LANG=C.UTF-8
 PATH=(custom, no user)
 SHELL=/bin/bash
 XDG_RUNTIME_DIR=<set>
SourcePackage: ubiquity
UpgradeStatus: No upgrade log present (probably fresh install)

Revision history for this message
Leon (sed-i) wrote :
Revision history for this message
Launchpad Janitor (janitor) wrote :

Status changed to 'Confirmed' because the bug affects multiple users.

Changed in ubiquity (Ubuntu):
status: New → Confirmed
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.