Skip to main content

Vendor/product archive

gnome / gvfs CVEs

Beta · best-effort

5 CVEs tagged to gnome / gvfs0 Critical, 4 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2019-12795

Published Jun 11, 2019

daemon/gvfsdaemon.c in gvfsd from GNOME gvfs before 1.38.3, 1.40.x before 1.40.2, and 1.41.x before 1.41.3 opened a private D-Bus server socket without configuring an authorizatio…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-12448

Published May 29, 2019

An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c has race conditions because the admin backend doesn't implement query_info_on_read/write.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2019-3827

Published Mar 25, 2019

An incorrect permission check in the admin backend in gvfs before version 1.39.4 was found that allows reading and modify arbitrary files by privileged users without asking for pa…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1