apport hooks report potentially sensitive data
Bug #453667 reported by
LaMont Jones
This bug report is a duplicate of:
Bug #371827: apport-collect should show you what is being sent.
Edit
Remove
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
apport (Ubuntu) |
Triaged
|
Medium
|
Unassigned | ||
network-manager (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
Binary package hint: network-manager
No effort is made to warn the user what files will be blindly uploaded to public bug reports prior to doing so.
This could include passwords and other sensitive data from interfaces, as well as information that is likely irrelevant to the bug, such as MAC addresses, static routes, and so forth.
While this is specific to the data uploaded by network-manager's hook script, I expect that it is more of a systemic issue in apport.
Changed in apport (Ubuntu): | |
status: | New → Triaged |
importance: | Undecided → Medium |
To post a comment you must log in.
Aren't apport bugs private by default?