Updated: 2023-11-04 21:00:04.170688
Description:
A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.
Links | NIST | CIRCL | RHEL | Ubuntu |
Severity | Score | |
---|---|---|
CVSS Version 2.x | 0 | |
CVSS Version 3.x | MEDIUM | 5.5 |
OS name | Project name | Version | Score | Severity | Status | Errata | Last updated |
---|---|---|---|---|---|---|---|
CentOS 6 ELS | glib2 | 2.28.8 | 5.5 | MEDIUM | Released | CLSA-2022:1642084196 | 2022-05-05 12:04:18 |
CentOS 7 ELS | glib2 | 2.56.1 | 5.5 | MEDIUM | Ignored | 2023-09-19 09:30:32 | |
CentOS 8.4 ELS | glib2 | 2.56.4-10 | 5.5 | MEDIUM | Released | CLSA-2022:1645466687 | 2022-02-21 17:54:36 |
CentOS 8.5 ELS | glib2 | 2.56.4-156 | 5.5 | MEDIUM | Already Fixed | 2022-09-01 08:02:11 | |
CloudLinux 6 ELS | glib2 | 2.28.8 | 5.5 | MEDIUM | Released | CLSA-2022:1642083868 | 2022-01-25 08:18:11 |
Oracle Linux 6 ELS | glib2 | 2.28.8 | 5.5 | MEDIUM | Released | CLSA-2022:1642083911 | 2022-01-13 11:33:24 |
Ubuntu 16.04 ELS | glib2.0 | 2.48.2-0 | 5.5 | MEDIUM | Released | CLSA-2021:1640697102 | 2021-12-28 08:35:28 |
Ubuntu 18.04 ELS | glib2.0 | 2.56.4-0 | 5.5 | MEDIUM | Already Fixed | 2024-05-09 10:21:32 |