Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-41322

Опубликовано: 23 сент. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.8

Описание

In Kitty before 0.26.2, insufficient validation in the desktop notification escape sequence can lead to arbitrary code execution. The user must display attacker-controlled content in the terminal, then click on a notification popup.

РелизСтатусПримечание
bionic

DNE

devel

not-affected

0.26.5-3ubuntu2
esm-apps/focal

not-affected

code not present
esm-apps/jammy

released

0.21.2-1ubuntu0.22.04.1
focal

not-affected

code not present
jammy

released

0.21.2-1ubuntu0.22.04.1
kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was needs-triage
mantic

not-affected

0.26.5-3ubuntu2
trusty

DNE

Показывать по

EPSS

Процентиль: 83%
0.02034
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
больше 3 лет назад

In Kitty before 0.26.2, insufficient validation in the desktop notification escape sequence can lead to arbitrary code execution. The user must display attacker-controlled content in the terminal, then click on a notification popup.

CVSS3: 7.8
debian
больше 3 лет назад

In Kitty before 0.26.2, insufficient validation in the desktop notific ...

CVSS3: 7.8
github
больше 3 лет назад

In Kitty before 0.26.2, insufficient validation in the desktop notification escape sequence can lead to arbitrary code execution. The user must display attacker-controlled content in the terminal, then click on a notification popup.

EPSS

Процентиль: 83%
0.02034
Низкий

7.8 High

CVSS3