Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-24742

Опубликовано: 09 авг. 2021
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 7.8

Описание

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

РелизСтатусПримечание
bionic

not-affected

5.9.5+dfsg-0ubuntu2.5
devel

not-affected

5.15.2+dfsg-9
esm-apps/focal

not-affected

5.12.8+dfsg-0ubuntu1
esm-apps/jammy

not-affected

5.15.2+dfsg-9
esm-infra-legacy/trusty

DNE

esm-infra/bionic

not-affected

5.9.5+dfsg-0ubuntu2.5
esm-infra/xenial

not-affected

focal

not-affected

5.12.8+dfsg-0ubuntu1
hirsute

not-affected

5.15.2+dfsg-5ubuntu1
impish

not-affected

5.15.2+dfsg-9

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

not-affected

5.15.2+dfsg-4
esm-apps/focal

not-affected

5.12.8+dfsg-0ubuntu1
esm-apps/jammy

not-affected

5.15.2+dfsg-4
esm-apps/xenial

not-affected

esm-infra-legacy/trusty

DNE

focal

not-affected

5.12.8+dfsg-0ubuntu1
hirsute

not-affected

5.15.2+dfsg-3ubuntu1
impish

not-affected

5.15.2+dfsg-4
jammy

not-affected

5.15.2+dfsg-4

Показывать по

EPSS

Процентиль: 68%
0.00569
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
больше 4 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

CVSS3: 7.8
nvd
больше 4 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

CVSS3: 7.8
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 7.8
debian
больше 4 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader atte ...

github
больше 3 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

EPSS

Процентиль: 68%
0.00569
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3