[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2019-11461 -- nautilus

ID: oval:org.secpod.oval:def:1901964Date: (C)2019-05-07   (M)2023-10-15
Class: VULNERABILITYFamily: unix




An issue was discovered in GNOME Nautilus 3.30 prior to 3.30.6 and 3.32 prior to 3.32.1. A compromised thumbnailer may escape the bubblewrap sandbox used to confine thumbnailers by using the TIOCSTI ioctl to push characters into the input buffer of the thumbnailer"s controlling terminal, allowing an attacker to escape the sandbox if the thumbnailer has a controlling terminal. This is due to improper filtering of the TIOCSTI ioctl on 64-bit systems, similar to CVE-2019-10063.

Platform:
Ubuntu 19.04
Product:
nautilus
Reference:
CVE-2019-11461
CVE    1
CVE-2019-11461
CPE    2
cpe:/a:gnome:nautilus
cpe:/o:ubuntu:ubuntu_linux:19.04

© SecPod Technologies