An incorrect permission check in the admin backend in gvfs before version 1.39.4 was found that allows reading and modify arbitrary files by privileged users without asking for password when no authentication agent is running. This vulnerability can be exploited by malicious programs running under privileges of users belonging to the wheel group to further escalate its privileges by modifying system files without user's knowledge. Successful exploitation requires uncommon system configuration.
CVSS Details
- CVSS 3.1 Base Score: 7
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H)
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade gvfs-archiveUpgrade gvfs-clientUpgrade gvfs-mtp-debuginfoUpgrade gvfs-goa-debuginfoUpgrade gvfs-fuse-debuginfoUpgrade gvfs-smb-debuginfoUpgrade gvfs-gphoto2Upgrade gvfs-gphoto2-debuginfoUpgrade gvfs-afc-debuginfoUpgrade gvfs-smbUpgrade gvfs-client-debuginfoUpgrade gvfs-afp-debuginfoUpgrade gvfs-develUpgrade gvfs-afpUpgrade gvfsUpgrade gvfs-afcUpgrade gvfs-goaUpgrade gvfs-testsUpgrade gvfs-fuseUpgrade gvfs-debugsourceUpgrade gvfs-mtpUpgrade gvfs-archive-debuginfoUpgrade gvfs-debuginfo | Aug 28, 2019 | Mar 25, 2019 |
| Debian | — | Upgrade gvfs | Feb 14, 2019 | Feb 14, 2019 |
| Huawei Euleros 2_0_sp5 | — | Upgrade gvfs-smbUpgrade gvfs-gphoto2Upgrade gvfs-archiveUpgrade gvfs-afpUpgrade gvfs-mtpUpgrade gvfs-goaUpgrade gvfs-afcUpgrade gvfs-clientUpgrade gvfsUpgrade gvfs-fuseUpgrade gvfs-devel | Nov 19, 2019 | Mar 25, 2019 |
| Oracle_linux | — | Upgrade gvfs-archiveUpgrade gvfs-afpUpgrade gvfs-clientUpgrade gvfs-testsUpgrade gvfs-develUpgrade gvfs-goaUpgrade gvfs-gphoto2Upgrade gvfs-mtpUpgrade gvfs-fuseUpgrade gvfs-afcUpgrade gvfs-smbUpgrade gvfs | Jul 21, 2020 | Dec 27, 2018 |
| Redhat_linux | — | Upgrade gvfs-debugsourceUpgrade gvfs-develUpgrade gvfsUpgrade gvfs-mtpUpgrade gvfs-debuginfoUpgrade gvfs-afcUpgrade gvfs-fuse-debuginfoUpgrade gvfs-goaUpgrade gvfs-goa-debuginfoUpgrade gvfs-clientUpgrade gvfs-client-debuginfoUpgrade gvfs-gphoto2-debuginfoUpgrade gvfs-fuseUpgrade gvfs-smbUpgrade gvfs-testsUpgrade gvfs-afpUpgrade gvfs-mtp-debuginfoUpgrade gvfs-smb-debuginfoUpgrade gvfs-gphoto2Upgrade gvfs-afc-debuginfoUpgrade gvfs-afp-debuginfoUpgrade gvfs-archiveUpgrade gvfs-archive-debuginfo | Jun 19, 2019 | Mar 25, 2019 |
| Suse | — | Upgrade gvfs-backend-afcUpgrade gvfs-backendsUpgrade gvfs-backend-sambaUpgrade gvfs-fuseUpgrade gvfsUpgrade gvfs-develUpgrade gvfs-langUpgrade gvfs-32bit | Feb 28, 2019 | Feb 12, 2019 |
| Ubuntu | — | Upgrade gvfsUpgrade gvfs-backends | Feb 16, 2019 | Feb 12, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub