ZeroHour

CVE-2019-12450

CVSS 3.1
9.8 critical
EPSS
3%p84
Published
()
Modified
Description

file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progress. Instead, default permissions are used.

Vendors
gnomedebianredhatcanonicalopensusefedoraproject
Products
glib, debian linux, enterprise linux, enterprise linux eus, enterprise linux server aus, enterprise linux server tus, ubuntu linux, leap, fedora
Weakness
CWE-276, CWE-362
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.