CVE Vulnerabilities

CVE-2019-12447

Published: May 29, 2019 | Modified: Nov 07, 2023
CVSS 3.x
7.3
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N
CVSS 2.x
4.9 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
6.4 MODERATE
CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N
Ubuntu
MEDIUM

An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles file ownership because setfsuid is not used.

Affected Software

Name Vendor Start Version End Version
Gvfs Gnome 1.29.4 (including) 1.41.2 (including)
Red Hat Enterprise Linux 8 RedHat accountsservice-0:0.6.50-8.el8 *
Red Hat Enterprise Linux 8 RedHat appstream-data-0:8-20191129.el8 *
Red Hat Enterprise Linux 8 RedHat baobab-0:3.28.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat clutter-0:1.26.2-8.el8 *
Red Hat Enterprise Linux 8 RedHat evince-0:3.28.4-4.el8 *
Red Hat Enterprise Linux 8 RedHat gdm-1:3.28.3-29.el8 *
Red Hat Enterprise Linux 8 RedHat gjs-0:1.56.2-4.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-boxes-0:3.28.5-8.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-control-center-0:3.28.2-19.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-menus-0:3.13.3-11.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-online-accounts-0:3.28.2-1.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-remote-desktop-0:0.1.6-8.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-session-0:3.28.1-8.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-settings-daemon-0:3.32.0-9.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-shell-0:3.32.2-14.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-software-0:3.30.6-3.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-terminal-0:3.28.3-1.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-tweaks-0:3.28.1-7.el8 *
Red Hat Enterprise Linux 8 RedHat gsettings-desktop-schemas-0:3.32.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat gtk3-0:3.22.30-5.el8 *
Red Hat Enterprise Linux 8 RedHat gvfs-0:1.36.2-8.el8 *
Red Hat Enterprise Linux 8 RedHat LibRaw-0:0.19.5-1.el8 *
Red Hat Enterprise Linux 8 RedHat libvncserver-0:0.9.11-14.el8 *
Red Hat Enterprise Linux 8 RedHat libxslt-0:1.1.32-4.el8 *
Red Hat Enterprise Linux 8 RedHat mozjs52-0:52.9.0-2.el8 *
Red Hat Enterprise Linux 8 RedHat mozjs60-0:60.9.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat mutter-0:3.32.2-34.el8 *
Red Hat Enterprise Linux 8 RedHat nautilus-0:3.28.1-12.el8 *
Red Hat Enterprise Linux 8 RedHat vala-0:0.40.19-1.el8 *
Red Hat Enterprise Linux 8 RedHat vinagre-0:3.22.0-21.el8 *
Red Hat Enterprise Linux 8 RedHat accountsservice-0:0.6.50-8.el8 *
Red Hat Enterprise Linux 8 RedHat appstream-data-0:8-20191129.el8 *
Red Hat Enterprise Linux 8 RedHat baobab-0:3.28.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat clutter-0:1.26.2-8.el8 *
Red Hat Enterprise Linux 8 RedHat evince-0:3.28.4-4.el8 *
Red Hat Enterprise Linux 8 RedHat gdm-1:3.28.3-29.el8 *
Red Hat Enterprise Linux 8 RedHat gjs-0:1.56.2-4.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-boxes-0:3.28.5-8.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-control-center-0:3.28.2-19.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-menus-0:3.13.3-11.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-online-accounts-0:3.28.2-1.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-remote-desktop-0:0.1.6-8.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-session-0:3.28.1-8.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-settings-daemon-0:3.32.0-9.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-shell-0:3.32.2-14.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-software-0:3.30.6-3.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-terminal-0:3.28.3-1.el8 *
Red Hat Enterprise Linux 8 RedHat gnome-tweaks-0:3.28.1-7.el8 *
Red Hat Enterprise Linux 8 RedHat gsettings-desktop-schemas-0:3.32.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat gtk3-0:3.22.30-5.el8 *
Red Hat Enterprise Linux 8 RedHat gvfs-0:1.36.2-8.el8 *
Red Hat Enterprise Linux 8 RedHat LibRaw-0:0.19.5-1.el8 *
Red Hat Enterprise Linux 8 RedHat libvncserver-0:0.9.11-14.el8 *
Red Hat Enterprise Linux 8 RedHat libxslt-0:1.1.32-4.el8 *
Red Hat Enterprise Linux 8 RedHat mozjs52-0:52.9.0-2.el8 *
Red Hat Enterprise Linux 8 RedHat mozjs60-0:60.9.0-4.el8 *
Red Hat Enterprise Linux 8 RedHat mutter-0:3.32.2-34.el8 *
Red Hat Enterprise Linux 8 RedHat nautilus-0:3.28.1-12.el8 *
Red Hat Enterprise Linux 8 RedHat vala-0:0.40.19-1.el8 *
Red Hat Enterprise Linux 8 RedHat vinagre-0:3.22.0-21.el8 *
Gvfs Ubuntu bionic *
Gvfs Ubuntu cosmic *
Gvfs Ubuntu devel *
Gvfs Ubuntu disco *
Gvfs Ubuntu trusty *

References