CVE-2023-5557

See a problem?
Source
https://nvd.nist.gov/vuln/detail/CVE-2023-5557
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-5557.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-5557
Related
Withdrawn
2024-06-12T03:53:53.918671Z
Published
2023-10-13T02:15:11Z
Modified
2024-05-30T04:13:21.107471Z
Severity
  • 7.7 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A flaw was found in the tracker-miners package. A weakness in the sandbox allows a maliciously-crafted file to execute code outside the sandbox if the tracker-extract process has first been compromised by a separate vulnerability.

References

Affected packages

Git / github.com/gnome/tracker-miners

Affected ranges

Type
GIT
Repo
https://github.com/gnome/tracker-miners
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

0.*

0.10.0
0.11.0
0.11.1
0.11.2
0.12.0
0.13.0
0.13.1
0.14.0
0.15.0
0.15.1
0.15.2
0.15.3
0.15.4
0.16.0
0.17.0
0.17.1
0.17.2
0.17.3
0.17.4
0.17.5
0.17.6
0.17.7
0.17.8
0.7.0
0.7.1
0.7.11
0.7.12
0.7.13
0.7.14
0.7.15
0.7.16
0.7.17
0.7.18
0.7.19
0.7.2
0.7.20
0.7.21
0.7.22
0.7.23
0.7.24
0.7.25
0.7.26
0.7.27
0.7.28
0.7.3
0.7.4
0.7.5
0.7.6
0.7.7
0.7.8
0.8.0
0.9.0
0.9.1
0.9.10
0.9.11
0.9.12
0.9.13
0.9.14
0.9.15
0.9.16
0.9.17
0.9.18
0.9.19
0.9.21
0.9.22
0.9.23
0.9.24
0.9.25
0.9.26
0.9.27
0.9.28
0.9.29
0.9.3
0.9.30
0.9.31
0.9.32
0.9.33
0.9.34
0.9.35
0.9.36
0.9.37
0.9.38
0.9.4
0.9.5
0.9.6
0.9.7
0.9.8
0.9.8.0
0.9.9

1.*

1.0.0
1.0.5
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.10.0
1.11.0
1.11.0.1
1.11.0.1b
1.11.1
1.11.2
1.11.3
1.11.4
1.12.0
1.13.0
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
1.3.4
1.3.5
1.3.6
1.5.0
1.5.1
1.5.2
1.6.0
1.7.0
1.7.1
1.7.2
1.7.3
1.7.4
1.7.5
1.8.0
1.9.0
1.9.1
1.9.2
1.99.0
1.99.1
1.99.2
1.99.3

2.*

2.0.0
2.0.1
2.0.2
2.0.3
2.0.4
2.0.5
2.1.0
2.1.1
2.1.2
2.1.3
2.1.4
2.2.0
2.2.0-alpha1
2.2.0-alpha2
2.2.1
2.2.2
2.2.99.0
2.2.99.1
2.3.0
2.99.1
2.99.2
2.99.3
2.99.4
2.99.5

3.*

3.0.0
3.0.1
3.1.0
3.1.0.alpha
3.1.0.beta
3.1.0.rc
3.1.1
3.2.0
3.2.0-alpha
3.2.0.alpha.1
3.2.0.beta
3.2.0.rc
3.2.1
3.3.0
3.3.0.alpha
3.3.0.beta
3.3.0.rc
3.3.1

Other

INDEXER_SPLIT_MERGEPOINT
TRACKER_0_5_1
TRACKER_0_5_2
TRACKER_0_5_4
TRACKER_0_6_0
TRACKER_0_6_1
TRACKER_0_6_2
TRACKER_0_6_5
TRACKER_0_6_6
TRACKER_0_6_90
TRACKER_0_6_92
TRACKER_0_6_93
default
tracker-0-0-2
tracker_0_0_1
tracker_0_5_2
tracker_0_5_3