CVE-2018-14036
13.07.2018, 12:29
Directory Traversal with ../ sequences occurs in AccountsService before 0.6.50 because of an insufficient path check in user_change_icon_file_authorized_cb() in user.c.
| Vendor | Product | Version |
|---|---|---|
| freedesktop | accountsservice | 𝑥 < 0.6.50 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References