在 Linux 系统上,Canonical Apport 在 2.36.0、2.34.2 和 2.28.4 版本之前的 中存在路径穿越漏洞。攻击者可以通过在崩溃报告文件中注入受控的键名,以执行用户的权限创建或覆盖任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-61897 | 7.8 HIGH | accountsservice: incomplete privilege drop when running Ubuntu-specific language helper sc |
| CVE-2026-61898 | 7.8 HIGH | accountsservice: shell injection via attacker-controlled ~/.pam_environment in Ubuntu lang |
https://github.com/0xROI/CVE-2026-77113
https://github.com/0xROI/CVE-2026-77113