Lucene search

K
redhatcveRedhat.comRH:CVE-2022-37290
HistoryDec 01, 2022 - 11:26 a.m.

CVE-2022-37290

2022-12-0111:26:17
redhat.com
access.redhat.com
11
nautilus package
null pointer dereference
crash
zip archive

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

32.8%

A NULL pointer dereference was found in the Nautilus package. This issue may lead to a crash via pasted ZIP archive

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

32.8%