ZeroHour

CVE-2021-3800

PoC
CVSS 3.1
5.5 medium
EPSS
<1%p45
Published
()
Modified
Description

A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.

Vendors
gnomedebiannetapp
Products
glib, debian linux, active iq unified manager
Weakness
CWE-200, CWE-552
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.