Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-24742

Опубликовано: 09 авг. 2021
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 7.8

Описание

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

РелизСтатусПримечание
bionic

not-affected

5.9.5+dfsg-0ubuntu2.5
devel

not-affected

5.15.2+dfsg-9
esm-apps/focal

not-affected

5.12.8+dfsg-0ubuntu1
esm-apps/jammy

not-affected

5.15.2+dfsg-9
esm-infra-legacy/trusty

DNE

esm-infra-legacy/xenial

not-affected

esm-infra/bionic

not-affected

5.9.5+dfsg-0ubuntu2.5
esm-infra/xenial

not-affected

focal

not-affected

5.12.8+dfsg-0ubuntu1
hirsute

not-affected

5.15.2+dfsg-5ubuntu1

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

not-affected

5.15.2+dfsg-4
esm-apps-legacy/xenial

not-affected

esm-apps/focal

not-affected

5.12.8+dfsg-0ubuntu1
esm-apps/jammy

not-affected

5.15.2+dfsg-4
esm-apps/xenial

not-affected

esm-infra-legacy/trusty

DNE

focal

not-affected

5.12.8+dfsg-0ubuntu1
hirsute

not-affected

5.15.2+dfsg-3ubuntu1
impish

not-affected

5.15.2+dfsg-4

Показывать по

EPSS

Процентиль: 64%
0.01167
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
redhat
почти 5 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

CVSS3: 7.8
nvd
почти 5 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

CVSS3: 7.8
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 7.8
debian
почти 5 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader atte ...

github
около 4 лет назад

An issue has been fixed in Qt versions 5.14.0 where QPluginLoader attempts to load plugins relative to the working directory, allowing attackers to execute arbitrary code via crafted files.

EPSS

Процентиль: 64%
0.01167
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3

Уязвимость CVE-2020-24742