GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Sat Aug 31, 2019 9:26 pm Post subject: [ GLSA 201908-28 ] GNOME desktop library |
|
|
Gentoo Linux Security Advisory
Title: GNOME desktop library: Security bypass (GLSA 201908-28)
Severity: normal
Exploitable: local
Date: 2019-08-31
Bug(s): #692782
ID: 201908-28
Synopsis
A vulnerability in the GNOME desktop library may allow attackers to
escape the sandbox.
Background
Library with common API for various GNOME modules.
Affected Packages
Package: gnome-base/gnome-desktop
Vulnerable: < 3.30.2.3
Unaffected: >= 3.30.2.3
Architectures: All supported architectures
Description
A vulnerability was discovered in the GNOME desktop library which allows
an attacker to escape the sandbox.
Impact
A local attacker could possibly bypass sandbox protection.
Workaround
There is no known workaround at this time.
Resolution
All GNOME desktop library users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose
">=gnome-base/gnome-desktop-3.30.2.3"
|
References
CVE-2019-11460 |
|