← back
CVE-2016-9950

CVE-2016-9950

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 6.5%
from disclosure to weapon0 days
Published on NVDDec 17
1st PoCDec 14
exploitation probability
6.5%top 7% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
An issue was discovered in Apport before 2.20.4. There is a path traversal issue in the Apport crash file "Package" and "SourcePackage" fields. These fields are used to build a path to the package specific hook files in the /usr/share/apport/package-hooks/ directory. An attacker can exploit this path traversal to execute arbitrary Python files from the local system.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.