Lack of data validation - Path Traversal In gnome-keyring
Description
GNOME gnome-keyring 3.4.0 through 3.4.1, when gpg-cache-method is set to "idle" or "timeout," does not properly limit the amount of time a passphrase is cached, which allows attackers to have an unspecified impact via unknown attack vectors.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 12 | 3.4.1-5 | ||
debian 11 | 3.4.1-5 | ||
debian 13 | 3.4.1-5 | ||
debian 14 | 3.4.1-5 |
Aliases
1. 2. 3. 4. 5.