Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-43091

Опубликовано: 17 нояб. 2024
Источник: debian
EPSS Низкий

Описание

A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service.json configuration file. If the configuration file is malicious, it may execute arbitrary code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gnome-mapsfixed45~rc-1package
gnome-mapsignoredbookwormpackage
gnome-mapsnot-affectedbullseyepackage
gnome-mapsnot-affectedbusterpackage

Примечания

  • https://gitlab.gnome.org/GNOME/gnome-maps/-/issues/588

  • Introduced with merge: https://gitlab.gnome.org/GNOME/gnome-maps/-/merge_requests/227 (v43.alpha)

  • Fixed by: https://gitlab.gnome.org/GNOME/gnome-maps/-/commit/d26cd774d524404ef7784e6808f551de83de4bea (v45.rc)

EPSS

Процентиль: 52%
0.00287
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 1 года назад

A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service.json configuration file. If the configuration file is malicious, it may execute arbitrary code.

CVSS3: 9.8
nvd
около 1 года назад

A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service.json configuration file. If the configuration file is malicious, it may execute arbitrary code.

CVSS3: 9.8
github
около 1 года назад

A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service.json configuration file. If the configuration file is malicious, it may execute arbitrary code.

EPSS

Процентиль: 52%
0.00287
Низкий