CVE-2012-0949: Canonical Ubuntu Linux

Medium severity, CVSS 5.0. EPSS: 2.1% chance of exploitation in the next 30 days.

The Apport hook in Update Manager as used by Ubuntu 12.04 LTS, 11.10, and 11.04 uploads certain system state archive files when reporting bugs to Launchpad, which allows remote attackers to read repository credentials by viewing a public bug report.

Affected products

  • Canonical Ubuntu Linux: version 11.04 only; version 11.10 only; version 12.04 only

Published 2012-05-31. Last modified 2026-06-16.