CVE-2022-45062
Summary
| CVE | CVE-2022-45062 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-11-09 07:15:00 UTC |
| Updated | 2023-11-07 03:54:00 UTC |
| Description | In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Escape characters which do not belong into an URI/URL (Issue #390) (f34a92a8) · Commits · Xfce / xfce4-settings · GitLab |
MISC |
gitlab.xfce.org |
|
| xfce4-settings: Browser Argument Injection (GLSA 202305-05) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| Debian -- Security Information -- DSA-5296-1 xfce4-settings |
DEBIAN |
www.debian.org |
|
| Tags · Xfce / xfce4-settings · GitLab |
MISC |
gitlab.xfce.org |
|
| [SECURITY] Fedora 37 Update: xfce4-places-plugin-1.8.3-1.fc37 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| Not Found |
MISC |
gitlab.xfce.org |
|
| Escape characters which do not belong into an URI/URL (Issue #390) (55e3c5fb) · Commits · Xfce / xfce4-settings · GitLab |
MISC |
gitlab.xfce.org |
|
| [SECURITY] Fedora 37 Update: xfce4-places-plugin-1.8.3-1.fc37 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181306 Debian Security Update for xfce4-settings (DSA 5296-1)
- 182174 Debian Security Update for xfce4-settings (CVE-2022-45062)
- 199398 Ubuntu Security Notification for xfce4-settings Vulnerability (USN-6141-1)
- 283504 Fedora Security Update for xfce4 (FEDORA-2022-7febff96e0)
- 710719 Gentoo Linux xfce4-settings Browser Argument Injection Vulnerability (GLSA 202305-05)