Thunar before 1.3.1 could crash when copy and pasting a file name with % format characters due to a format string error.
References
Link | Resource |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00008.html | Mailing List Third Party Advisory |
https://security-tracker.debian.org/tracker/CVE-2011-1588 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-1588 | Issue Tracking Patch Third Party Advisory |
https://access.redhat.com/security/cve/cve-2011-1588 | Not Applicable Third Party Advisory |
https://github.com/xfce-mirror/thunar/blob/master/NEWS#L774 | |
https://github.com/xfce-mirror/thunar/commit/03dd312e157d4fa8a11d5fa402706ae5b05806fa |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2019-11-13 18:15
Updated : 2020-08-18 08:05
NVD link : CVE-2011-1588
Mitre link : CVE-2011-1588
JSON object : View
CWE
CWE-134
Use of Externally-Controlled Format String
Products Affected
debian
- debian_linux
xfce
- thunar
opensuse
- opensuse