VYPR
High severity7.8NVD Advisory· Published Feb 2, 2018· Updated Jun 17, 2026

CVE-2017-14177

CVE-2017-14177

Description

Apport through 2.20.7 does not properly handle core dumps from setuid binaries allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion or possibly gain root privileges. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1324.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • cpe:2.3:a:apport_project:apport:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:apport_project:apport:*:*:*:*:*:*:*:*range: <=2.20.7
    • (no CPE)range: <=2.20.7
  • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*+ 4 more
    • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:17.04:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
  • Ubuntu/Ubuntullm-fuzzy

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.