Vulnerabilities > Gnome > Gvfs > 1.38.0

DATE CVE VULNERABILITY TITLE RISK
2019-06-11 CVE-2019-12795 Incorrect Default Permissions vulnerability in Gnome Gvfs
daemon/gvfsdaemon.c in gvfsd from GNOME gvfs before 1.38.3, 1.40.x before 1.40.2, and 1.41.x before 1.41.3 opened a private D-Bus server socket without configuring an authorization rule.
local
low complexity
gnome CWE-276
7.8
2019-05-29 CVE-2019-12449 Improper Handling of Exceptional Conditions vulnerability in multiple products
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2.
network
low complexity
gnome canonical opensuse fedoraproject CWE-755
5.7
2019-05-29 CVE-2019-12448 Race Condition vulnerability in Gnome Gvfs
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2.
network
high complexity
gnome CWE-362
8.1
2019-05-29 CVE-2019-12447 An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2.
network
low complexity
gnome canonical opensuse fedoraproject
7.3
2019-03-25 CVE-2019-3827 Incorrect Authorization vulnerability in Gnome Gvfs
An incorrect permission check in the admin backend in gvfs before version 1.39.4 was found that allows reading and modify arbitrary files by privileged users without asking for password when no authentication agent is running.
local
gnome CWE-863
3.3