Apport

Vendor:

First CVE: Apr 22, 2019 · Active for 7 years

33
Total CVEs
More Total CVEs than 96% of tracked products
5.5
Avg CVEs / Year
Higher CVE frequency than 89% of tracked products
5.7
Avg CVSS
Higher Avg CVSS than 17% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Apport over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 22, 2019
7 years ago
Most Recent CVE
Dec 10, 2025
229 days ago

CVE Severity & Scoring

Apport33 CVEs
All CVEs352,719 CVEs
LowMediumHigh
Attack Vector
Local31 (93.9%)
Network2 (6.1%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low28 (84.8%)
High5 (15.2%)
Unknown0 (0.0%)
User Interaction
None33 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low32 (97.0%)
High0 (0.0%)
None1 (3.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (33 CVEs).

33 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system is specially configured to allow unprivileged users to run
Apr 13, 20237.826NONO
It was discovered that apport in data/apport did not properly open a report file to prevent hanging reads on a FIFO.
Jun 11, 20217.825NONO
Apport can be tricked into connecting to arbitrary sockets as the root user
Jun 3, 20247.824NONO
There is a race condition in the 'replaced executable' detection that, with the correct local configuration, allow an attacker to execute arbitrary code as root.
Jun 3, 20247.824NONO
It was discovered that the get_starttime() function in data/apport did not properly parse the /proc/pid/stat file from the kernel.
Jun 11, 20217.824NONO
TOCTOU Race Condition vulnerability in apport allows a local attacker to escalate privileges and execute arbitrary code. An attacker may exit the crashed process and exploit PID re
Aug 6, 20207.024NONO
Kevin Backhouse discovered that apport would read a user-supplied configuration file with elevated privileges. By replacing the file with a symbolic link, a user could get apport t
Feb 8, 20207.824NONO
It was discovered that the get_pid_info() function in data/apport did not properly parse the /proc/pid/status file from the kernel.
Jun 11, 20217.823NONO
It was discovered that the process_report() function in data/whoopsie-upload-all allowed arbitrary file writes via symlinks.
Jun 12, 20217.122NONO
Apport creates a world writable lock file with root ownership in the world writable /var/lock/apport directory. If the apport/ directory does not exist (this is not uncommon as /va
Apr 22, 20205.521NONO

Exploit Exposure

Signals from CVEs in this product scope (33 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (33 CVEs).

Media Mentions

Signals from CVEs in this product scope (33 CVEs).

Top CNAs Publishing CVEs For Apport

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2.20.9-0ubuntu7.955.30.4%00
2.20.9-0ubuntu7.855.30.4%00
2.20.9-0ubuntu7.755.30.4%00
2.20.9-0ubuntu7.655.30.4%00
2.20.9-0ubuntu7.555.30.4%00
2.20.9-0ubuntu7.455.30.4%00
2.20.9-0ubuntu7.355.30.4%00
2.20.9-0ubuntu7.2425.50.5%00
2.20.9-0ubuntu7.2325.50.5%00
2.20.9-0ubuntu7.2125.50.5%00
2.20.9-0ubuntu7.2025.50.5%00
2.20.9-0ubuntu7.255.30.4%00
2.20.9-0ubuntu7.1925.50.5%00
2.20.9-0ubuntu7.1825.50.5%00
2.20.9-0ubuntu7.1725.50.5%00
2.20.9-0ubuntu7.1625.50.5%00
2.20.9-0ubuntu7.1555.30.4%00
2.20.9-0ubuntu7.1455.30.4%00
2.20.9-0ubuntu7.1355.30.4%00
2.20.9-0ubuntu7.1255.30.4%00