Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-0570

Опубликовано: 14 сент. 2020
Источник: debian
EPSS Низкий

Описание

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qtbase-opensource-srcfixed5.12.5+dfsg-8package
qtbase-opensource-srcfixed5.11.3+dfsg1-1+deb10u3busterpackage
qtbase-opensource-srcnot-affectedstretchpackage
qtbase-opensource-srcnot-affectedjessiepackage

Примечания

  • https://bugreports.qt.io/browse/QTBUG-81272

  • Patch: https://code.qt.io/cgit/qt/qtbase.git/commit/?id=e6f1fde24f77f63fb16b2df239f82a89d2bf05dd

  • https://lists.qt-project.org/pipermail/development/2020-January/038534.html

EPSS

Процентиль: 47%
0.00241
Низкий

Связанные уязвимости

CVSS3: 7.3
ubuntu
почти 5 лет назад

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

CVSS3: 7.3
redhat
больше 5 лет назад

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

CVSS3: 7.3
nvd
почти 5 лет назад

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

CVSS3: 7.3
msrc
около 4 лет назад

Описание отсутствует

github
около 3 лет назад

Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.

EPSS

Процентиль: 47%
0.00241
Низкий