* SECURITY UPDATE: Arbitrary file read (LP: #1934308)
- data/general-hooks/ubuntu.py: don't attempt to include emacs
byte-compilation logs, they haven't been generated by the emacs
packages in a long time.
- CVE-2021-3709
* SECURITY UPDATE: Info disclosure via path traversal (LP: #1933832)
- apport/hookutils.py, test/test_hookutils.py: detect path traversal
attacks, and directory symlinks.
- CVE-2021-3710
-- Marc Deslauriers <email address hidden> Thu, 26 Aug 2021 10:55:40 -0400
This bug was fixed in the package apport - 2.20.11-0ubuntu65.3
--------------- 0ubuntu65. 3) hirsute-security; urgency=medium
apport (2.20.11-
* SECURITY UPDATE: Arbitrary file read (LP: #1934308) hooks/ubuntu. py: don't attempt to include emacs compilation logs, they haven't been generated by the emacs hookutils. py, test/test_ hookutils. py: detect path traversal
- data/general-
byte-
packages in a long time.
- CVE-2021-3709
* SECURITY UPDATE: Info disclosure via path traversal (LP: #1933832)
- apport/
attacks, and directory symlinks.
- CVE-2021-3710
-- Marc Deslauriers <email address hidden> Thu, 26 Aug 2021 10:55:40 -0400