Ubuntu apport PID recycling security vulnerability (CVE-2019-15790)

This is the third post in a series about Ubuntu’s crash reporting system. We’ll review CVE-2019-15790, a vulnerability in apport that enables a local attacker to obtain the ASLR offsets...

By · · 1 min read
Ubuntu apport PID recycling security vulnerability (CVE-2019-15790)

Source: The GitHub Blog

This is the third post in a series about Ubuntu’s crash reporting system. We’ll review CVE-2019-15790, a vulnerability in apport that enables a local attacker to obtain the ASLR offsets for any process they can start (or restart).