CVE-2019-13012 -- libglib2.0-0ID: oval:org.secpod.oval:def:1902194 | Date: (C)2019-07-12 (M)2023-12-20 |
Class: VULNERABILITY | Family: unix |
The keyfile settings backend in GNOME GLib before 2.59.1 creates directories using g_file_make_directory_with_parents and files using g_file_replace_contents . Consequently, it does not properly restrict directory permissions. Instead, for directories, 0777 permissions are used; for files, default file permissions are used. This is similar to CVE-2019-12450.
Platform: |
Ubuntu 16.04 |
Ubuntu 18.04 |