Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-12755

Опубликовано: 09 мая 2020
Источник: debian
EPSS Низкий

Описание

fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
kio-extrasfixed4:20.08.3-1package
kio-extrasno-dsabusterpackage
kio-extrasno-dsastretchpackage

Примечания

  • https://github.com/KDE/kio-extras/commit/d813cef3cecdec9af1532a40d677a203ff979145

EPSS

Процентиль: 16%
0.0005
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
больше 5 лет назад

fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.

CVSS3: 3.3
nvd
больше 5 лет назад

fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.

github
больше 3 лет назад

fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.

EPSS

Процентиль: 16%
0.0005
Низкий