CVE-2019-12450

Description

file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progress. Instead, default permissions are used.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.941

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 10.5Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 10.6Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.2Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.3Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 11.0Windows
GLib library of C routines (USN-4014-1) libglib2.0-0_2.48.2-0ubuntu4.2_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.48.2-0ubuntu4.2_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.58.1-2ubuntu0.1_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.58.1-2ubuntu0.1_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.60.0-1ubuntu0.1_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.60.0-1ubuntu0.1_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.56.4-0ubuntu0.18.04.3_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-0_2.56.4-0ubuntu0.18.04.3_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.48.2-0ubuntu4.2_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.48.2-0ubuntu4.2_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.58.1-2ubuntu0.1_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.58.1-2ubuntu0.1_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.60.0-1ubuntu0.1_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.60.0-1ubuntu0.1_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.56.4-0ubuntu0.18.04.3_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-bin_2.56.4-0ubuntu0.18.04.3_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.48.2-0ubuntu4.2_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.48.2-0ubuntu4.2_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.58.1-2ubuntu0.1_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.58.1-2ubuntu0.1_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.60.0-1ubuntu0.1_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.60.0-1ubuntu0.1_amd64.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.56.4-0ubuntu0.18.04.3_i386.debLinux
GLib library of C routines (USN-4014-1) libglib2.0-dev_2.56.4-0ubuntu0.18.04.3_amd64.debLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-devel-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-devel-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-doc-2.56.1-7.el7.noarch.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-fam-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-static-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-static-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update glib2-tests-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-devel-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-devel-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-devel-docs-1.5.17-11.el7.noarch.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk2-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk2-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk3-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-gtk3-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-libs-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-libs-1.5.17-11.el7.x86_64.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-pygtk2-1.5.17-11.el7.noarch.rpmLinux
(RHSA-2020:3978) glib2 and ibus security and bug fix update ibus-setup-1.5.17-11.el7.noarch.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update glib2-debuginfo-2.56.1-7.el7.i686.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update glib2-debuginfo-2.56.1-7.el7.x86_64.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update ibus-debuginfo-1.5.17-11.el7.i686.rpmLinux
(RHSA-2020:3978)Moderate: and ibus security and bug fix update ibus-debuginfo-1.5.17-11.el7.x86_64.rpmLinux
Glib2 update (ELSA-2020-3978) glib2-2.56.1-7.el7.i686.rpmLinux
Glib2 update (ELSA-2020-3978) glib2-2.56.1-7.el7.x86_64.rpmLinux
Glib2-devel update (ELSA-2020-3978) glib2-devel-2.56.1-7.el7.i686.rpmLinux
Glib2-devel update (ELSA-2020-3978) glib2-devel-2.56.1-7.el7.x86_64.rpmLinux
Ibus update (ELSA-2020-3978) ibus-1.5.17-11.el7.i686.rpmLinux
Ibus update (ELSA-2020-3978) ibus-1.5.17-11.el7.x86_64.rpmLinux
Ibus-gtk2 update (ELSA-2020-3978) ibus-gtk2-1.5.17-11.el7.i686.rpmLinux
Ibus-gtk2 update (ELSA-2020-3978) ibus-gtk2-1.5.17-11.el7.x86_64.rpmLinux
Ibus-gtk3 update (ELSA-2020-3978) ibus-gtk3-1.5.17-11.el7.i686.rpmLinux
Ibus-gtk3 update (ELSA-2020-3978) ibus-gtk3-1.5.17-11.el7.x86_64.rpmLinux
Ibus-libs update (ELSA-2020-3978) ibus-libs-1.5.17-11.el7.i686.rpmLinux
Ibus-libs update (ELSA-2020-3978) ibus-libs-1.5.17-11.el7.x86_64.rpmLinux
Ibus-setup update (ELSA-2020-3978) ibus-setup-1.5.17-11.el7.noarch.rpmLinux
Concurrent Execution using Shared Resource with Improper Synchronization (Race Condition) Vulnerability (CVE-2019-12450)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234