Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
whoopsie vulnerabilities and exploits
(subscribe to this query)
7.1
CVSSv3
CVE-2021-32557
It exists that the process_report() function in data/whoopsie-upload-all allowed arbitrary file writes via symlinks.
Canonical Apport
5.5
CVSSv3
CVE-2020-11937
In whoopsie, parse_report() from whoopsie.c allows a local malicious user to cause a denial of service via a crafted file. The DoS is caused by resource exhaustion due to a memory leak. Fixed in 0.2.52.5ubuntu0.5, 0.2.62ubuntu0.5 and 0.2.69ubuntu0.1.
Canonical Whoopsie 0.2.66
Canonical Whoopsie 0.2.67
Canonical Whoopsie 0.2.68
Canonical Whoopsie 0.2.69
Canonical Whoopsie 0.2.49
Canonical Whoopsie 0.2.50
Canonical Whoopsie 0.2.51
Canonical Whoopsie 0.2.52
Canonical Whoopsie 0.2.52.1
Canonical Whoopsie 0.2.52.2
Canonical Whoopsie 0.2.52.3
Canonical Whoopsie 0.2.52.4
Canonical Whoopsie 0.2.52.5
Canonical Whoopsie 0.2.52.5ubuntu0.1
Canonical Whoopsie 0.2.52.5ubuntu0.2
Canonical Whoopsie 0.2.52.5ubuntu0.3
Canonical Whoopsie 0.2.52.5ubuntu0.4
Canonical Whoopsie 0.2.58
Canonical Whoopsie 0.2.59
Canonical Whoopsie 0.2.59build1
Canonical Whoopsie 0.2.60
Canonical Whoopsie 0.2.61
5.5
CVSSv3
CVE-2020-15570
The parse_report() function in whoopsie.c in Whoopsie up to and including 0.2.69 mishandles memory allocation failures, which allows an malicious user to cause a denial of service via a malformed crash file.
Whoopsie Project Whoopsie
5.5
CVSSv3
CVE-2020-12135
bson prior to 0.8 incorrectly uses int rather than size_t for many variables, parameters, and return values. In particular, the bson_ensure_space() parameter bytesNeeded could have an integer overflow via properly constructed bson input.
Whoopsie Project Whoopsie
Mongodb C Driver
1 Github repository
7.8
CVSSv3
CVE-2019-11484
Kevin Backhouse discovered an integer overflow in bson_ensure_space, as used in whoopsie.
Whoopsie Project Whoopsie -
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 19.04
Canonical Ubuntu Linux 19.10
4.9
CVSSv3
CVE-2012-0945
whoopsie-daisy prior to 0.1.26: Root user can remove arbitrary files
Whoopsie-daisy Project Whoopsie-daisy
7.8
CVSSv3
CVE-2019-11476
An integer overflow in whoopsie prior to 0.2.52.5ubuntu0.1, 0.2.62ubuntu0.1, 0.2.64ubuntu0.1, 0.2.66, results in an out-of-bounds write to a heap allocated buffer when processing large crash dumps. This results in a crash or possible code-execution in the context of the whoopsie ...
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 18.10
Canonical Ubuntu Linux 19.04
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-26925
CVE-2023-41826
LFI
CVE-2022-22364
CVE-2024-2887
command injection
remote code execution
CVE-2024-34446
CVE-2022-48699
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started