Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2023:0006-1

Опубликовано: 02 янв. 2023
Источник: suse-cvrf

Описание

Security update for nautilus

This update for nautilus fixes the following issues:

  • CVE-2022-37290: Fixed a denial of service caused by pasted ZIP archives (bsc#1205418).

Список пакетов

SUSE Linux Enterprise Module for Desktop Applications 15 SP4
gnome-shell-search-provider-nautilus-41.5-150400.3.6.1
libnautilus-extension1-41.5-150400.3.6.1
nautilus-41.5-150400.3.6.1
nautilus-devel-41.5-150400.3.6.1
nautilus-lang-41.5-150400.3.6.1
typelib-1_0-Nautilus-3_0-41.5-150400.3.6.1
openSUSE Leap 15.4
gnome-shell-search-provider-nautilus-41.5-150400.3.6.1
libnautilus-extension1-41.5-150400.3.6.1
nautilus-41.5-150400.3.6.1
nautilus-devel-41.5-150400.3.6.1
nautilus-lang-41.5-150400.3.6.1
typelib-1_0-Nautilus-3_0-41.5-150400.3.6.1

Описание

GNOME Nautilus 42.2 allows a NULL pointer dereference and get_basename application crash via a pasted ZIP archive.


Затронутые продукты
SUSE Linux Enterprise Module for Desktop Applications 15 SP4:gnome-shell-search-provider-nautilus-41.5-150400.3.6.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP4:libnautilus-extension1-41.5-150400.3.6.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP4:nautilus-41.5-150400.3.6.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP4:nautilus-devel-41.5-150400.3.6.1

Ссылки
Уязвимость SUSE-SU-2023:0006-1