Sander Bos discovered a time of check to time of use (TOCTTOU) vulnerability in apport that allowed a user to cause core files to be written in arbitrary directories.
References
Link | Resource |
---|---|
https://usn.ubuntu.com/usn/usn-4171-1 | Third Party Advisory |
https://usn.ubuntu.com/usn/usn-4171-2 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2020-02-07 21:15
Updated : 2020-02-12 10:49
NVD link : CVE-2019-11482
Mitre link : CVE-2019-11482
JSON object : View
CWE
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
Products Affected
canonical
- ubuntu_linux
apport_project
- apport