CVE-2020-11937: Canonical Whoopsie
Medium severity, CVSS 5.5. EPSS: 0.5% chance of exploitation in the next 30 days.
In whoopsie, parse_report() from whoopsie.c allows a local attacker to cause a denial of service via a crafted file. The DoS is caused by resource exhaustion due to a memory leak. Fixed in 0.2.52.5ubuntu0.5, 0.2.62ubuntu0.5 and 0.2.69ubuntu0.1.
Affected products
- Canonical Whoopsie: version 0.2.66 only; version 0.2.67 only; version 0.2.68 only; version 0.2.69 only; version 0.2.49 only; version 0.2.50 only; …
Published 2020-08-06. Last modified 2026-06-17.