Advisories ยป MGASA-2019-0352

Updated glib2.0 packages fix security vulnerability

Publication date: 30 Nov 2019
Modification date: 30 Nov 2019
Type: security
Affected Mageia releases : 7
CVE: CVE-2019-12450

Description

The updated packages fix a security vulnerability:

file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does
not properly restrict file permissions while a copy operation is in
progress. Instead, default permissions are used. (CVE-2019-12450)
                

References

SRPMS

7/core