DescriptionByobu Apport hook may disclose sensitive information since it automatically uploads the local user's .screenrc which may contain private hostnames, usernames and passwords. This issue affects: byobu
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

byobu (PTS)bullseye5.133-1vulnerable
sid, trixie, bookworm5.133-1.1vulnerable

Issue in /usr/share/apport/package-hooks/ hook,
non-issue in Debian as Apport not present.

