VYPR
Low severity3.8NVD Advisory· Published Feb 8, 2020· Updated Jun 17, 2026

CVE-2019-11481

CVE-2019-11481

Description

Kevin Backhouse discovered that apport would read a user-supplied configuration file with elevated privileges. By replacing the file with a symbolic link, a user could get apport to read any file on the system as root, with unknown consequences.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • Ubuntu/Apportllm-fuzzy
  • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*+ 4 more
    • cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*
  • cpe:2.3:a:apport_project:apport:-:*:*:*:*:*:*:*
  • Range: 2.14.1

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.