Path Traversal Vulnerability in Canonical Apport on Linux Systems
CVE-2026-77113
6.7MEDIUM
What is CVE-2026-77113?
A path traversal vulnerability exists in the apport-unpack component of Canonical Apport prior to versions 2.36.0, 2.34.2, and 2.28.4 on Linux systems. This flaw allows attackers to exploit crash report files by using specially crafted key names, enabling them to create or overwrite arbitrary files with the privileges of the executing user. This poses significant risks, potentially leading to unauthorized access and manipulation of sensitive data.
Affected Version(s)
Apport Linux 0 < 2.36.0
Apport Linux 0 < 2.34.2
Apport Linux 0 < 2.28.4
