CVE Vulnerabilities

CVE-2023-5557

Published: Oct 13, 2023 | Modified: Dec 12, 2023
CVSS 3.x
7.7
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A flaw was found in the tracker-miners package. A weakness in the sandbox allows a maliciously-crafted file to execute code outside the sandbox if the tracker-extract process has first been compromised by a separate vulnerability.

Affected Software

Name Vendor Start Version End Version
Tracker_miners Gnome * 3.3.2 (excluding)
Tracker_miners Gnome 3.4.0 (including) 3.4.5 (excluding)
Tracker_miners Gnome 3.5.0 (including) 3.5.3 (excluding)
Tracker_miners Gnome 3.6.0 (including) 3.6.1 (excluding)

References