Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

nautilus: CVE-2022-37290 #4579

Open
CamberLoid opened this issue Jun 14, 2023 · 0 comments
Open

nautilus: CVE-2022-37290 #4579

CamberLoid opened this issue Jun 14, 2023 · 0 comments
Assignees
Labels
security Topic/issue involves a security issue/fixed

Comments

@CamberLoid
Copy link
Member

CamberLoid commented Jun 14, 2023

CVE IDs

CVE-2022-37290

Other security advisory IDs

Description

GNOME Nautilus 42.2 allows a NULL pointer dereference and get_basename application crash via a pasted ZIP archive.
See also:

Patches

PoC(s)

N/A

Notes

This is a CVE with low severity. Processing of this will be squashed to the upcoming Roll-up topic

@CamberLoid CamberLoid added the security Topic/issue involves a security issue/fixed label Jun 14, 2023
@CamberLoid CamberLoid added this to the Semi-Annually Security Survey 2023H1 milestone Jun 14, 2023
@CamberLoid CamberLoid self-assigned this Jul 12, 2023
CamberLoid added a commit that referenced this issue Jul 12, 2023
* Fix #4579

Signed-off-by: Camber Huang <camber@poi.science>
@MingcongBai MingcongBai removed this from the Semi-Annually Security Survey 2023H1 milestone Mar 4, 2024
@MingcongBai MingcongBai removed the 2023h1 label Mar 7, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security Topic/issue involves a security issue/fixed
Projects
None yet
Development

No branches or pull requests

2 participants