Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-21694

Опубликовано: 18 янв. 2022
Источник: debian
EPSS Низкий

Описание

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. The website mode of the onionshare allows to use a hardened CSP, which will block any scripts and external resources. It is not possible to configure this CSP for individual pages and therefore the security enhancement cannot be used for websites using javascript or external resources like fonts or images.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
onionsharefixed2.5-1package
onionsharenot-affectedbusterpackage

Примечания

  • https://github.com/onionshare/onionshare/security/advisories/GHSA-h29c-wcm8-883h

  • https://github.com/onionshare/onionshare/issues/1389

  • This isn't a security vulnerability by itself

EPSS

Процентиль: 49%
0.00255
Низкий

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 4 лет назад

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. The website mode of the onionshare allows to use a hardened CSP, which will block any scripts and external resources. It is not possible to configure this CSP for individual pages and therefore the security enhancement cannot be used for websites using javascript or external resources like fonts or images.

CVSS3: 3.7
nvd
около 4 лет назад

OnionShare is an open source tool that lets you securely and anonymously share files, host websites, and chat with friends using the Tor network. The website mode of the onionshare allows to use a hardened CSP, which will block any scripts and external resources. It is not possible to configure this CSP for individual pages and therefore the security enhancement cannot be used for websites using javascript or external resources like fonts or images.

CVSS3: 3.7
github
около 4 лет назад

Incorrect Permission Assignment for Critical Resource in OnionShare

EPSS

Процентиль: 49%
0.00255
Низкий