Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia 8: 2021-0306 Moderate: Thunar Code Execution Risk Fix

mageia
Calendar Grey June 30, 2021
Dist Mageia Esm H88
The latest Thunar 4.16.8 update addresses key security issues, enhancing system stability. Learn more about the identified vulnerabilities and their fixes
An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2

Summary

An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2. When called with a regular file as a command-line argument, it delegates to a different program (based on the file type) without user confirmation. This could be used to achieve code execution (CVE-2021-32563).

References

- https://bugs.mageia.org/show_bug.cgi?id=28904

- https://www.openwall.com/lists/oss-security/2021/05/09/2

- https://www.openwall.com/lists/oss-security/2021/05/11/3

- https://www.cve.org/CVERecord?id=CVE-2021-32563

Resolution

SRPMS

- 8/core/thunar-4.16.8-1.mga8

Publication date: 30 Jun 2021
URL: https://advisories.mageia.org/MGASA-2021-0306.html
Type: security
CVE: CVE-2021-32563

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here