← All credits
Sander Bos
12 vulnerability records and advisories credit this contributor.
RHSA-2018:0336
Red Hat Security Advisory: Satellite 6.3 security, bug fix, and enhancement update
RHBA-2016:1501
Red Hat Bug Fix Advisory: Red Hat Satellite 6.2 Capsule and Server
CVE-2019-7306
Byobu apport hook uploads user's ~/.screenrc
CVE-2019-7305
eXtplorer exposes /usr and /etc/extplorer over HTTP
CVE-2019-11485
apport created lock file in wrong directory
CVE-2019-11483
Sander Bos discovered Apport mishandled crash dumps originating from containers. This could be used by a local attacker to generate a crash report for a privileged process that is readable by an unprivileged user.
CVE-2019-11482
Race condition between reading current working directory and writing a core dump
CVE-2018-6557
Insecure temporary file use in base-files
CVE-2018-6552
Apport treats the container PID as the global PID when /proc/<global_pid>/ is missing
CVE-2017-14180
Apport 2.13 through 2.20.7 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via resource exhaustion or possibly gain root