MGASA-2019-0352

Source
https://advisories.mageia.org/MGASA-2019-0352.html
Import Source
https://advisories.mageia.org/MGASA-2019-0352.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2019-0352
Related
Published
2019-11-30T13:06:06Z
Modified
2019-11-30T12:44:00Z
Summary
Updated glib2.0 packages fix security vulnerability
Details

The updated packages fix a security vulnerability:

filecopyfallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progress. Instead, default permissions are used. (CVE-2019-12450)

References
Credits

Affected packages

Mageia:7 / glib2.0

Package

Name
glib2.0
Purl
pkg:rpm/mageia/glib2.0?distro=mageia-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.60.2-1.2.mga7

Ecosystem specific

{
    "section": "core"
}