CVE-2020-0570
גבוהה 7.3
תיאור (מקור, אנגלית)
Uncontrolled search path in the QT Library before 5.14.0, 5.12.7 and 5.9.10 may allow an authenticated user to potentially enable elevation of privilege via local access.
מדדים
- CVSS 3.1
-
7.3 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H - CWE
- CWE-426
מוצרים מושפעים
qt: qt; redhat: enterprise linux
קישורים
- https://bugreports.qt.io/browse/QTBUG-81272 ExploitPatchVendor Advisory
- https://lists.qt-project.org/pipermail/development/2020-January/038534.html Mailing ListVendor Advisory
- https://bugreports.qt.io/browse/QTBUG-81272 ExploitPatchVendor Advisory
- https://lists.qt-project.org/pipermail/development/2020-January/038534.html Mailing ListVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1800604 Issue TrackingPatchThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1800604 Issue TrackingPatchThird Party Advisory