Lucene search

K
osvGoogleOSV:CVE-2021-32553
HistoryJun 12, 2021 - 4:15 a.m.

CVE-2021-32553

2021-06-1204:15:12
Google
osv.dev
9
cve-2021-32553
symlink vulnerability
openjdk-17
apport hooks
private data
local users
software

AI Score

6.4

Confidence

Low

EPSS

0

Percentile

9.7%

It was discovered that read_file() in apport/hookutils.py would follow symbolic links or open FIFOs. When this function is used by the openjdk-17 package apport hooks, it could expose private data to other local users.

AI Score

6.4

Confidence

Low

EPSS

0

Percentile

9.7%