Link to CoreDump.gz is sent by e-mail when Apport bug is marked as duplicate

Bug #181365 reported by Albert Damen
262
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Launchpad itself
Triaged
High
Unassigned

Bug Description

When an apport bug containing a coredump is filed, the bug is marked as private. When this bug gets retraced by the Apport retracing service, the coredump is removed and the bug is marked as public. However, when the Apport retracing service marks this bug as duplicate of another (master) bug, an e-mail containing a link to the coredump.gz is sent to subscribers of the master bug.
As the coredump may contain sensitive information, this is a security issue.

For example, those lines are in the e-mail I received (link censored):
** Tags removed: need-amd64-retrace

** Attachment removed: "CoreDump.gz"

   http://launchpadlibrarian.net/xxxxxxxx/CoreDump.gz

That link actually opens the coredump.

Expected behavior: e-mail sent to subscribers of the master bug should not contain the link to the CoreDump.gz.

The librarian URL is also visible in the bug's activity log.

Tags: lp-bugs
Revision history for this message
William Grant (wgrant) wrote :

Erk, that is bad. Actions performed when the bug was private probably shouldn't be batched in with public notifications.

Changed in malone:
status: New → Confirmed
Revision history for this message
Matthew Paul Thomas (mpt) wrote :

I think this is a duplicate of bug 106162.

Changed in malone:
importance: Undecided → High
William Grant (wgrant)
description: updated
Revision history for this message
Robert Collins (lifeless) wrote :

We now have actual private bug attachments, so the visibility aspect is fixed. The fact a notification is sent out is as mpt says bug 106162.

To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.