Описание
A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.56.4-0ubuntu0.18.04.9 |
| devel | not-affected | 2.68.4-1ubuntu1 |
| esm-infra-legacy/trusty | released | 2.40.2-0ubuntu1.1+esm4 |
| esm-infra/bionic | released | 2.56.4-0ubuntu0.18.04.9 |
| esm-infra/focal | not-affected | 2.64.6-1~ubuntu20.04.4 |
| esm-infra/xenial | released | 2.48.2-0ubuntu4.8+esm1 |
| focal | not-affected | 2.64.6-1~ubuntu20.04.4 |
| hirsute | not-affected | 2.68.1-1~ubuntu21.04.1 |
| impish | not-affected | 2.68.4-1ubuntu1 |
| trusty | ignored | end of standard support |
Показывать по
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.
A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.
A flaw was found in glib before version 2.63.6. Due to random charset alias pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.
A flaw was found in glib before version 2.63.6. Due to random charset ...
EPSS
5.5 Medium
CVSS3