Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-3155

Опубликовано: 03 апр. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.4

Описание

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.

РелизСтатусПримечание
devel

not-affected

4.2.2-4
esm-infra/bionic

needs-triage

esm-infra/focal

not-affected

3.36.2-0ubuntu1.1
esm-infra/xenial

needs-triage

focal

released

3.36.2-0ubuntu1.1
jammy

released

42.1-1ubuntu0.1
noble

released

42.2-1ubuntu0.24.04.1
oracular

released

42.2-1ubuntu0.24.10.1
plucky

released

42.2-2ubuntu0.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 26%
0.00086
Низкий

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
redhat
3 месяца назад

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.

CVSS3: 7.4
nvd
3 месяца назад

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.

CVSS3: 7.4
debian
3 месяца назад

A flaw was found in Yelp. The Gnome user help application allows the h ...

CVSS3: 6.5
github
3 месяца назад

A flaw was found in Yelp. The Gnome user help application allows the help document to execute arbitrary scripts. This vulnerability allows malicious users to input help documents, which may exfiltrate user files to an external environment.

oracle-oval
около 1 месяца назад

ELSA-2025-7569: yelp and yelp-xsl security update (IMPORTANT)

EPSS

Процентиль: 26%
0.00086
Низкий

7.4 High

CVSS3