Wind River Support Network

HomeDefectsLIN1021-18
Fixed

LIN1021-18 : Security Advisory - thunar - CVE-2021-32563

Created: May 17, 2021    Updated: Aug 25, 2021
Resolved Date: Jun 10, 2021
Found In Version: 10.21.20.1
Fix Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2. When called with a regular file as a command-line argument, it delegates to a different program (based on the file type) without user confirmation. This could be used to achieve code execution.

CREATE(Triage):(User=admin) CVE-2021-32563 (https://nvd.nist.gov/vuln/detail/CVE-2021-32563)

CVEs


Live chat
Online