file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0...
Critical severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Mar 24, 2023
Description
Published by the National Vulnerability Database
May 29, 2019
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Mar 24, 2023
file_copy_fallback in gio/gfile.c in GNOME GLib 2.15.0 through 2.61.1 does not properly restrict file permissions while a copy operation is in progress. Instead, default permissions are used.
References