Note:
This project will be discontinued after December 13, 2021. [more]
2019-05-29
file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progress. Instead, default permissions are used.
Products | Ubuntu_linux, Debian_linux, Fedora, Glib, Leap, Enterprise_linux, Enterprise_linux_eus, Enterprise_linux_server_aus, Enterprise_linux_server_tus |
Type | Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') (CWE-362) Incorrect Default Permissions (CWE-276) |
First patch | - None (likely due to unavailable code) |
Links |
• https://security.netapp.com/advisory/ntap-20190606-0003/
• https://usn.ubuntu.com/4014-2/ • https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2W4WIOAGO3M743M5KZLVQZM3NGHQDYLI/ • https://usn.ubuntu.com/4014-1/ • https://access.redhat.com/errata/RHSA-2019:3530 |