Lucene search

K
cvelistRedhatCVELIST:CVE-2021-3800
HistoryAug 23, 2022 - 12:00 a.m.

CVE-2021-3800

2022-08-2300:00:00
CWE-200
redhat
www.cve.org
2
glib
pkexec
privilege escalation

5.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.6%

A flaw was found in glib before version 2.63.6. Due to random charset alias, pkexec can leak content from files owned by privileged users to unprivileged ones under the right condition.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Glib",
    "versions": [
      {
        "version": "Fixed in glib2 2.63.6",
        "status": "affected"
      }
    ]
  }
]