Lucene search

K
redhatcveRedhat.comRH:CVE-2020-12825
HistoryMay 13, 2020 - 5:41 p.m.

CVE-2020-12825

2020-05-1317:41:24
redhat.com
access.redhat.com
13

EPSS

0.002

Percentile

55.0%

A stack overflow flaw was found in libcroco. A service using libcroco’s CSS parser could be crashed by a local, authenticated attacker, or an attacker utilizing social engineering, using a crafted input. The highest threat from this vulnerability is to system availability.

Mitigation

To mitigate this flaw as it applies to gnome-shell, do not install untrusted gnome-shell extensions or themes. Red Hat Enterprise Linux does not ship with gnome-shell themes that will trigger this vulnerability. To mitigate this flaw as it applies to inkscape, do not open untrusted CSS in inkscape.